iSmartgate PRO 1.5.9 is vulnerable to CSRF via the busca parameter in the form used for searching for users, accessible via /index.php. (This can be combined with reflected XSS.)
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-09-24T15:10:45

Updated: 2020-09-24T15:10:45

Reserved: 2020-04-27T00:00:00


Link: CVE-2020-12282

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-09-24T16:15:13.567

Modified: 2020-09-27T22:27:02.003


Link: CVE-2020-12282

JSON object: View

cve-icon Redhat Information

No data.

CWE