Lucene search

K
cveCiscoCVE-2015-0741
HistoryMay 21, 2015 - 10:59 a.m.

CVE-2015-0741

2015-05-2110:59:00
CWE-352
cisco
web.nvd.nist.gov
23
cve-2015-0741
csrf
cisco
prime central
hosted collaboration solution
pc4hcs
remote attack
authentication hijacking
bug id cscut04596
nvd

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.002

Percentile

57.5%

Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco Prime Central for Hosted Collaboration Solution (PC4HCS) 10.6(1) and earlier allow remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCut04596.

Affected configurations

Nvd
Node
ciscohosted_collaboration_solutionRange10.6\(1\)
VendorProductVersionCPE
ciscohosted_collaboration_solution*cpe:2.3:a:cisco:hosted_collaboration_solution:*:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.002

Percentile

57.5%

Related for CVE-2015-0741