Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-55633
HistoryJul 27, 2022 - 12:00 a.m.

IBM Security Verify Information Queue Cross-Site Request Forgery Vulnerability (CNVD-2022-55633)

2022-07-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
14
ibm
security
verify
information queue
cross-site request forgery
vulnerability
web application
malicious requests
sensitive actions

EPSS

0.001

Percentile

29.5%

IBM Security Verify Information Queue is an integration product from IBM of America, Inc. IBM Security Verify Information Queue version 10.0.2 contains a cross-site request forgery vulnerability that originates when a WEB application does not adequately verify that a request is from a trusted user. An attacker could use the vulnerability to spoof malicious requests to trick victims into clicking through to perform sensitive actions.

EPSS

0.001

Percentile

29.5%

Related for CNVD-2022-55633