First published: Tue Feb 06 2024(Updated: )
The cross-site request forgery token in the request may be predictable or easily guessable allowing attackers to craft a malicious request, which could be triggered by a victim unknowingly. In a successful CSRF attack, the attacker could lead the victim user to carry out an action unintentionally.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Westermo L206-f2g Firmware | =4.24 | |
Westermo L206-f2g |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.