ZeroHour

CVE-2023-5961

CVSS 3.1
8.8 high
EPSS
<1%p31
Published
()
Modified
Description

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior. An attacker can exploit this vulnerability to trick a client into making an unintentional request to the web server, which will be treated as an authentic request. This vulnerability may lead an attacker to perform operations on behalf of the victimized user.

Vendors
moxa
Products
iologik e1210 firmware, iologik e1211 firmware, iologik e1212 firmware, iologik e1213 firmware, iologik e1214 firmware, iologik e1240 firmware, iologik e1241 firmware, iologik e1242 firmware, iologik e1260 firmware, iologik e1262 firmware
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.