First published: Tue Nov 04 2014(Updated: )
Cross-site request forgery (CSRF) vulnerability in CA Cloud Service Management (CSM) before Summer 2014 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CA Cloud Service Management | <=2014 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-8473 is considered a medium severity vulnerability due to its nature of allowing cross-site request forgery.
To fix CVE-2014-8473, ensure that you update CA Cloud Service Management to the latest version released after Summer 2014.
CVE-2014-8473 is associated with a cross-site request forgery (CSRF) attack.
The potential impacts of CVE-2014-8473 include the hijacking of user authentication and unauthorized actions performed in the context of an authenticated user.
CVE-2014-8473 remains a risk for users who have not upgraded to versions of CA Cloud Service Management released after Summer 2014.