CVE
- Id
- 99502
- CVE No.
- CVE-2017-2682
- Status
- Candidate
- Description
- The Siemens web application RUGGEDCOM NMS < V1.2 on port 8080/TCP and 8081/TCP could allow a remote attacker to perform a Cross-Site Request Forgery (CSRF) attack, potentially allowing an attacker to execute administrative operations, provided the targeted user has an active session and is induced to trigger a malicious request.
- Phase
- Assigned (20161201)
- Votes
- None (candidate not yet proposed)
- Comments