Cross-Site Request Forgery (CSRF) in... CVE-2023-47024

- AV AC AU C I A
发布: 2024-01-20
修订: 2024-02-10

Cross-Site Request Forgery (CSRF) in NCR Terminal Handler v.1.5.1 leads to a one-click account takeover. This is achieved by exploiting multiple vulnerabilities, including an undisclosed function in the WSDL that has weak security controls and can accept custom content types.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息