CVE-2015-0651: CSRF
Cross-site request forgery (CSRF) vulnerability in the web GUI in Cisco Application Networking Manager (ANM), and Device Manager (DM) on Cisco 4710 Application Control Engine (ACE) appliances, allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuo99753.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0651?
CVE-2015-0651 is classified as a moderate severity vulnerability due to the potential for authentication hijacking.
How do I fix CVE-2015-0651?
To mitigate CVE-2015-0651, you should apply the latest security patches provided by Cisco for the affected products.
Who is affected by CVE-2015-0651?
CVE-2015-0651 affects users of the Cisco Application Networking Manager and Device Manager on Cisco 4710 Application Control Engine appliances.
What type of vulnerability is CVE-2015-0651?
CVE-2015-0651 is a cross-site request forgery (CSRF) vulnerability.
What can an attacker do with CVE-2015-0651?
An attacker exploiting CVE-2015-0651 could hijack the authentication of arbitrary users on the affected devices.