Cross-site request forgery (CSRF) vulnerability in IBM Flash System V9000 7.4 before 7.4.1.4, 7.5 before 7.5.1.3, and 7.6 before 7.6.0.4 allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=ssg1S1005570 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2016-03-12T15:00:00
Updated: 2024-08-06T07:51:27.359Z
Reserved: 2015-09-29T00:00:00
Link: CVE-2015-7446
Vulnrichment
No data.
NVD
Status : Modified
Published: 2016-03-12T15:59:00.150
Modified: 2024-11-21T02:36:48.283
Link: CVE-2015-7446
Redhat
No data.