CVE-2026-44925: CSRF
Cross-Site Request Forgery (CSRF) vulnerability in InfoScale v.9.1.3 Operations Manager (VIOM) allows an attacker to force the user with an active session into clicking a malicious HTML link, which triggers unintended modifications on VIOM web application without the user's knowledge.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-44925?
CVE-2026-44925 has a severity rating of 8.8, categorized as high.
What type of vulnerability is CVE-2026-44925?
CVE-2026-44925 is a Cross-Site Request Forgery (CSRF) vulnerability.
How can I mitigate CVE-2026-44925?
To mitigate CVE-2026-44925, ensure that all users are using the latest version of Veritas InfoScale Operations Manager and implement CSRF protection mechanisms.
What impact does CVE-2026-44925 have on affected systems?
CVE-2026-44925 allows an attacker to perform unintended modifications on the VIOM web application using the victim's active session.
Is CVE-2026-44925 exploitable remotely?
Yes, CVE-2026-44925 can be exploited remotely as it requires only the victim to click a malicious link.