vendor:
Integria IMS
by:
Javier Olmedo
8.8
CVSS
HIGH
Cross-Site Request Forgery
352
CWE
Product Name: Integria IMS
Affected Version From: 5.0.83
Affected Version To: 5.0.83
Patch Exists: YES
Related CWE: 2018-19829
CPE: cpe:2.3:a:articast:integriaims:5.0.83:*:*:*:*:*:*:*
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows & Ubuntu
2018
Integria IMS 5.0.83 – Cross-Site Request Forgery
Integria IMS version 5.0.83 and possibly before are affected by Cross-Site Request Forgery vulnerability, an attacker could delete users through GET or POST requests.
Mitigation:
The vendor has released a patch for this vulnerability in version 5.0.84.