CVE-2015-2852

Cross-site request forgery (CSRF) vulnerability in the WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3.8.4 allows remote attackers to hijack the authentication of administrators.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:blue_coat:ssl_visibility_appliance_sv2800_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:blue_coat:ssl_visibility_appliance_sv2800:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:blue_coat:ssl_visibility_appliance_sv1800_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:blue_coat:ssl_visibility_appliance_sv1800:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:blue_coat:ssl_visibility_appliance_sv3800_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:blue_coat:ssl_visibility_appliance_sv3800:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:blue_coat:ssl_visibility_appliance_sv800_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:blue_coat:ssl_visibility_appliance_sv800:-:*:*:*:*:*:*:*

Information

Published : 2015-05-30 12:59

Updated : 2016-12-02 19:07


NVD link : CVE-2015-2852

Mitre link : CVE-2015-2852


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

blue_coat

  • ssl_visibility_appliance_sv1800_firmware
  • ssl_visibility_appliance_sv2800_firmware
  • ssl_visibility_appliance_sv3800
  • ssl_visibility_appliance_sv3800_firmware
  • ssl_visibility_appliance_sv800
  • ssl_visibility_appliance_sv2800
  • ssl_visibility_appliance_sv1800
  • ssl_visibility_appliance_sv800_firmware