First published: Fri Jul 05 2019(Updated: )
Cross-site request forgery (CSRF) vulnerability in Zoho SalesIQ 1.0.8 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Zoho Salesiq | <=1.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-5963 is a Cross-Site Request Forgery (CSRF) vulnerability in Zoho SalesIQ 1.0.8 and earlier.
CVE-2019-5963 allows remote attackers to hijack the authentication of administrators in Zoho SalesIQ.
CVE-2019-5963 has a severity rating of 8.8 (High).
To fix CVE-2019-5963, update Zoho SalesIQ to version 1.0.9 or later.
You can find more information about CVE-2019-5963 at the following references: [https://jvn.jp/en/jp/JVN88962935/index.html](https://jvn.jp/en/jp/JVN88962935/index.html), [https://wordpress.org/plugins/zoho-salesiq/](https://wordpress.org/plugins/zoho-salesiq/), [https://wpvulndb.com/vulnerabilities/9433](https://wpvulndb.com/vulnerabilities/9433).