ZeroHour

CVE-2020-25562

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p42
Published
()
Modified
Description

In SapphireIMS 5.0, there is no CSRF token present in the entire application. This can lead to CSRF vulnerabilities in critical application forms like account resent.

Vendors
sapphireims
Products
sapphireims
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.