Cross-site request forgery (CSRF) vulnerability on Cisco TelePresence IP VCR devices with software 3.0(1.27) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuu90736.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/viewAlert.x?alertId=39800 | Vendor Advisory |
http://www.securitytracker.com/id/1032838 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2015-07-09 17:59
Updated : 2016-12-29 05:34
NVD link : CVE-2015-4256
Mitre link : CVE-2015-4256
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
cisco
- telepresence_ip_vcr_3.0