CVE-2020-25562
PoC —CVSS 3.1
6.5 medium
EPSS
<1%p42
Published
()
Modified
Description
In SapphireIMS 5.0, there is no CSRF token present in the entire application. This can lead to CSRF vulnerabilities in critical application forms like account resent.
- Vendors
- sapphireims
- Products
- sapphireims
- Weakness
- CWE-352
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
In the news0 stories
No ingested article mentions this CVE yet.