CVE-2015-2961: CSRF
Published Jun 9, 2015
·Updated
Cross-site request forgery (CSRF) vulnerability in Zoho NetFlow Analyzer build 10250 and earlier allows remote attackers to hijack the authentication of administrators.
Affected Software
1 affected component
ZohoCorp Manageengine Netflow Analyzer
Remediation
Event History
Jun 9, 2015
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2961?
The severity of CVE-2015-2961 is classified as high due to its ability to allow remote attackers to hijack administrator authentication.
2
How do I fix CVE-2015-2961?
To fix CVE-2015-2961, upgrade to a patched version of Zoho NetFlow Analyzer that addresses the CSRF vulnerability.
3
Who is affected by CVE-2015-2961?
Users of Zoho NetFlow Analyzer build 10250 and earlier are affected by CVE-2015-2961.
4
What type of vulnerability is CVE-2015-2961?
CVE-2015-2961 is a Cross-site Request Forgery (CSRF) vulnerability.
5
What could happen if CVE-2015-2961 is exploited?
If CVE-2015-2961 is exploited, an attacker could potentially perform unauthorized actions as an administrator, compromising the system.