First published: Sat May 16 2015(Updated: )
Cross-site request forgery (CSRF) vulnerability in Cisco MediaSense 10.5(1) and earlier allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuu16728.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco MediaSense | =9.1\(1\) | |
Cisco MediaSense | =10.0\(1\) | |
Cisco MediaSense | =10.5\(1\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0736 is considered a high-severity vulnerability due to its potential to allow remote attackers to hijack user authentication.
To fix CVE-2015-0736, it is recommended to update your Cisco MediaSense to a version that is not affected by this vulnerability, such as version 10.5(2) or later.
CVE-2015-0736 affects Cisco MediaSense versions 9.1(1), 10.0(1), and 10.5(1) and earlier.
CVE-2015-0736 is a cross-site request forgery (CSRF) vulnerability.
Yes, CVE-2015-0736 allows remote attackers to exploit the vulnerability and hijack the authentication of arbitrary users.