Security Advisory

CVE-2017-2682

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-02-27 11:00:00
Last updated 2024-08-05 14:02:07
Assigner siemens
CVSS score not scored
State PUBLISHED

Description

The Siemens web application RUGGEDCOM NMS < V1.2 on port 8080/TCP and 8081/TCP could allow a remote attacker to perform a Cross-Site Request Forgery (CSRF) attack, potentially allowing an attacker to execute administrative operations, provided the targeted user has an active session and is induced to trigger a malicious request.