CVE-2016-1161: CSRF
Published Apr 20, 2017
·Updated
Cross-site request forgery (CSRF) vulnerability in ManageEngine Password Manager Pro before 8.5 (Build 8500).
Affected Software
1 affected component
ZohoCorp Password Manager Pro<=8.5
Event History
Apr 20, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1161?
CVE-2016-1161 is classified as a medium severity vulnerability affecting ManageEngine Password Manager Pro.
2
How do I fix CVE-2016-1161?
To fix CVE-2016-1161, upgrade ManageEngine Password Manager Pro to version 8.5 or later.
3
What type of vulnerability is CVE-2016-1161?
CVE-2016-1161 is a cross-site request forgery (CSRF) vulnerability.
4
Which versions of ManageEngine Password Manager Pro are affected by CVE-2016-1161?
ManageEngine Password Manager Pro versions before 8.5 are affected by CVE-2016-1161.
5
What can happen if CVE-2016-1161 is exploited?
Exploitation of CVE-2016-1161 can allow an attacker to perform unauthorized actions on behalf of a logged-in user.