PTC Vuforia Studio does not require a token; this could allow an
attacker with local access to perform a cross-site request forgery
attack or a replay attack.
References
Link | Resource |
---|---|
https://https://www.cisa.gov/news-events/ics-advisories/icsa-23-131-13 | Broken Link |
https://www.cisa.gov/news-events/ics-advisories/icsa-23-131-13 | Third Party Advisory US Government Resource |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2023-06-07T21:52:29.300Z
Updated: 2023-06-07T21:52:29.300Z
Reserved: 2023-04-24T23:30:29.242Z
Link: CVE-2023-31200
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-06-07T22:15:10.040
Modified: 2023-06-16T14:52:35.283
Link: CVE-2023-31200
JSON object: View
Redhat Information
No data.
CWE