Boletines de Vulnerabilidades

Cisco Prime Central for HCS Multiple Cross-Site Request Forgery Vulnerabilities


Información sobre el sistema

   
Software afectado Cisco

Descripción

Multiple cross-site request forgery (CSRF) vulnerabilities in the Cisco Prime Central for HCS (PC4HCS) application could allow an unauthenticated, remote attacker to execute unwanted actions.The vulnerabilities are due to a lack of CSRF protections by an affected device. An attacker could exploit these vulnerabilities by convincing a user to follow a malicious link. A successful exploit could allow the attacker to submit arbitrary requests to the affected device via the web browser with the

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20150520-CVE-2015-0741?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Prime%20Central%20for%20HCS%20Multiple%20Cross-Site%20Reques

Identificadores estándar

Propiedad Valor
CVE CVE-2015-0741.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-11-27

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT