CVE-2016-8201 Information

Description

A CSRF vulnerability in Brocade Virtual Traffic Manager versions released prior to and including 11.0 could allow an attacker to trick a logged-in user into making administrative changes on the traffic manager cluster.

CVSS Vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Reference

http://www.securityfocus.com/bid/95930 https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA43681 https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44114 https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2019-0005 https://www.kb.cert.org/vuls/id/192371

Attack Complexity

LOW

Privileges Required

LOW

User Interaction Required

LOW

Scope

REQUIRED

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

HIGH

Base Score

HIGH

Base Severity

8.0

Share on: