CVE-2022-35656: CSRF
Published Aug 22, 2022
·Updated
Pega Platform from 8.3 to 8.7.3 vulnerability may allow authenticated security administrators to alter CSRF settings directly.
Affected Software
1 affected component
Pega Pega Platform>=8.3<=8.7.3
Event History
Aug 22, 2022
CVE Published
via MITRE·02:47 PM
Data Sourced
via MITRE·02:47 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this Pega Platform vulnerability?
The vulnerability ID is CVE-2022-35656.
2
What is the severity of CVE-2022-35656 vulnerability?
The severity of CVE-2022-35656 vulnerability is medium, with a CVSS score of 4.5.
3
What is the description of CVE-2022-35656 vulnerability?
CVE-2022-35656 is a vulnerability in Pega Platform from version 8.3 to 8.7.3 that may allow authenticated security administrators to alter CSRF settings directly.
4
Which software versions are affected by CVE-2022-35656 vulnerability?
The vulnerability affects Pega Platform versions from 8.3 to 8.7.3.
5
How can authenticated security administrators fix the CVE-2022-35656 vulnerability?
An authenticated security administrator should apply the recommended hotfix provided by Pega Platform.