Interactive Forms (IAF) in GX Software XperienCentral versions 10.31.0 until 10.33.0 was vulnerable to cross site request forgery (CSRF) because the unique token could be deduced using the names of all input fields.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-07-26T00:00:00

Updated: 2024-08-03T13:40:06.286Z

Reserved: 2022-10-24T00:00:00

Link: CVE-2022-43710

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-07-26T14:15:09.767

Modified: 2023-08-04T16:05:41.757

Link: CVE-2022-43710

cve-icon Redhat

No data.