Vulnslist

find the latest Cisco vulnerabilities

CVE-2014-2190

Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Broadcast Access Center for Telco and Wireless (aka BAC-TW) allows remote attackers to hijack the authentication of arbitrary users for requests that make BAC-TW changes, aka Bug IDs CSCuo23804 and CSCuo26389.

SeverityMEDIUM
CVSS6.8
CWECWE-352
KEV
Published
Modified

Related Products

Product Advisory
Cisco Nexus Dashboard Cisco-SA-20140507-CVE-2014-2190
Cisco Broadband Access Center Telco and Wireless Cisco-SA-20140507-CVE-2014-2190
Cisco Broadband Access Center Telco Wireless Software Cisco-SA-20140507-CVE-2014-2190