PT-2008-5076 · Harmonic · Harmoni

Publicado

2008-08-19

·

Atualizado

2017-09-29

·

CVE-2008-3716

CVSS v2.0

6.0

Média

VetorAV:N/AC:M/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Harmoni versions prior to 1.6.0
Description A cross-site request forgery issue allows remote attackers to make administrative modifications. This can be achieved via a save or delete action to an unspecified component.
Recommendations For versions prior to 1.6.0, update to version 1.6.0 or later to resolve the issue. As a temporary workaround, consider restricting access to administrative components to minimize the risk of exploitation.

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-3716

Produtos afetados

Harmoni