First published: Wed Nov 18 2015(Updated: )
Cross-site request forgery (CSRF) vulnerability in Cisco Prime Collaboration Assurance 10.5(1) and 10.6 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCus62712.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Prime Collaboration Assurance | =10.5.1 | |
Cisco Prime Collaboration Assurance | =10.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6330 is classified as a high-severity vulnerability due to its potential to allow remote attackers to hijack user authentication.
To remediate CVE-2015-6330, upgrade Cisco Prime Collaboration Assurance to version 10.6.1 or later.
CVE-2015-6330 affects Cisco Prime Collaboration Assurance versions 10.5.1 and 10.6.0.
CVE-2015-6330 is a Cross-Site Request Forgery (CSRF) vulnerability.
Yes, CVE-2015-6330 can be exploited remotely by attackers to hijack user sessions.