A CSRF issue was discovered in... CVE-2020-26516

6.8 AV AC AU C I A
发布: 2021-06-08
修订: 2024-11-21

A CSRF issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. Requests sent to the server that trigger actions do not contain a CSRF token and can therefore be entirely predicted allowing attackers to cause the victim's browser to execute undesired actions in the web application through crafted requests.

0%
暂无可用Exp或PoC
当前有24条受影响产品信息