ZeroHour

CVE-2016-1470

PoC
CVSS 3.0
8.8 high
EPSS
<1%p60
Published
()
Modified
Description

Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuz76230.

Vendors
cisco
Products
small business 220 series smart plus switches
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.