Multiple cross-site request forgery (CSRF) vulnerabilities in CERUserServlet pages in Cisco Emergency Responder (ER) 8.6 and earlier allow remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCun24250.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: cisco

Published: 2014-04-04T15:00:00

Updated: 2015-05-04T16:57:01

Reserved: 2014-02-25T00:00:00


Link: CVE-2014-2115

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2014-04-04T15:10:37.387

Modified: 2015-09-16T19:14:05.140


Link: CVE-2014-2115

JSON object: View

cve-icon Redhat Information

No data.

CWE