Cisco Global Site Selector CVE-2013-5471 Cross Site Request Forgery Vulnerability
BID:62166
Info
Cisco Global Site Selector CVE-2013-5471 Cross Site Request Forgery Vulnerability
| Bugtraq ID: | 62166 |
| Class: | Input Validation Error |
| CVE: |
CVE-2013-5471 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 04 2013 12:00AM |
| Updated: | Sep 04 2013 12:00AM |
| Credit: | Cisco |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Cisco Global Site Selector CVE-2013-5471 Cross Site Request Forgery Vulnerability
Cisco Global Site Selector is prone to a cross-site request-forgery vulnerability because the application does not properly validate HTTP requests.
Attackers can exploit this issue to perform certain administrative actions and to gain unauthorized access to the affected application.
This issue is being tracked by Cisco bug ID CSCuh42164.
Cisco Global Site Selector is prone to a cross-site request-forgery vulnerability because the application does not properly validate HTTP requests.
Attackers can exploit this issue to perform certain administrative actions and to gain unauthorized access to the affected application.
This issue is being tracked by Cisco bug ID CSCuh42164.
Solution / Fix
Cisco Global Site Selector CVE-2013-5471 Cross Site Request Forgery Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Cisco Global Site Selector CVE-2013-5471 Cross Site Request Forgery Vulnerability
References:
References: