CVE-2020-8461: CSRF
Published Dec 17, 2020
·Updated
A CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to get a victim's browser to send a specifically encoded request without requiring a valid CSRF token.
Affected Software
1 affected component
trendmicro Interscan Web Security Virtual Appliance=6.5-sp2
Event History
Dec 17, 2020
CVE Published
via MITRE·09:05 PM
Data Sourced
via MITRE·09:05 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-8461?
CVE-2020-8461 is a CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2.
2
How does CVE-2020-8461 impact the affected software?
CVE-2020-8461 allows an attacker to bypass CSRF protection in the affected software.
3
What is the severity of CVE-2020-8461?
The severity of CVE-2020-8461 is high with a CVSS score of 8.8.
4
How can I fix CVE-2020-8461?
To fix CVE-2020-8461, it is recommended to apply the latest security patch provided by Trend Micro.
5
Where can I find more information about CVE-2020-8461?
More information about CVE-2020-8461 can be found in the references provided.