A cross-site request forgery (CSRF) vulnerability in the APM webtop 11.2.1 or greater may allow attacker to force an APM webtop session to log out and require re-authentication.
References
Link | Resource |
---|---|
https://support.f5.com/csp/article/K74114570 | Vendor Advisory |
http://www.securityfocus.com/bid/106364 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-12-28 07:29
Updated : 2019-01-04 05:06
NVD link : CVE-2018-15334
Mitre link : CVE-2018-15334
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
f5
- big-ip_access_policy_manager