CVE-2023-6689

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
20/12/2023
Last modified:
29/12/2023

Description

<br /> <br /> <br /> <br /> <br /> A successful CSRF attack could force the user to perform state changing requests on the application. If the victim is an administrative account, a CSRF attack could compromise the entire web application.<br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:efacec:bcu_500_firmware:4.07:*:*:*:*:*:*:*
cpe:2.3:h:efacec:bcu_500:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools