CVE-2016-0386
—CVSS 3.0
8.0 high
EPSS
<1%p40
Published
()
Modified
Description
Cross-site request forgery (CSRF) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to hijack the authentication of administrators for requests that delete employees.
- Vendors
- ibm
- Products
- tririga application platform
- Weakness
- CWE-352
- Vector
- CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.