CVE-2016-6468

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
14/12/2016
Last modified:
12/04/2025

Description

A vulnerability in the web-based management interface of Cisco Emergency Responder could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. More Information: CSCvb06663. Known Affected Releases: 11.5(1.10000.4). Known Fixed Releases: 12.0(0.98000.14).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:emergency_responder:11.5\(1.10000.4\):*:*:*:*:*:*:*