CVE-2015-4274

Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Unified Intelligence Center 10.0(1) and 10.6(1) allows remote attackers to hijack the authentication of arbitrary users, aka Bug IDs CSCuu94862 and CSCuu97936.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:cisco:unified_intelligence_center:10.0\(1\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:unified_intelligence_center:10.6\(1\):*:*:*:*:*:*:*

History

21 Nov 2024, 02:30

Type Values Removed Values Added
References () http://tools.cisco.com/security/center/viewAlert.x?alertId=39920 - Vendor Advisory () http://tools.cisco.com/security/center/viewAlert.x?alertId=39920 - Vendor Advisory
References () http://www.securitytracker.com/id/1032962 - () http://www.securitytracker.com/id/1032962 -

Information

Published : 2015-07-16 19:59

Updated : 2024-11-21 02:30


NVD link : CVE-2015-4274

Mitre link : CVE-2015-4274

CVE.ORG link : CVE-2015-4274


JSON object : View

Products Affected

cisco

  • unified_intelligence_center
CWE
CWE-352

Cross-Site Request Forgery (CSRF)