CVE-2017-12253
CVE-2017-12253
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.2%KEV nãoPoC —Patch —
Lifecycle
21 Sep 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability in the Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to execute unwanted actions. The vulnerability is due to a lack of cross-site request forgery (CSRF) protection. An attacker could exploit this vulnerability by tricking the user of a web application into executing an adverse action. Cisco Bug IDs: CSCve76872.
Affected products
n/a · Cisco Unified Intelligence CenterWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →