Description
A successful CSRF attack could force the user to perform state changing requests on the application. If the victim is an administrative account, a CSRF attack could compromise the entire web application.
No analysis available yet.
Remediation
Vendor Solution
EFACEC released BCU 500 versions 4.08 to mitigate this vulnerability. For more information, contact EFACEC support https://www.efacec.pt/en/contacts/ .
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58910 | A successful CSRF attack could force the user to perform state changing requests on the application. If the victim is an administrative account, a CSRF attack could compromise the entire web application. |
References
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-02-25T16:34:33.296Z
Reserved: 2023-12-11T16:37:34.224Z
Link: CVE-2023-6689
No data.
Status : Modified
Published: 2023-12-20T00:15:09.850
Modified: 2024-11-21T08:44:21.947
Link: CVE-2023-6689
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD