CVE-2023-5961
ioLogik E1200 Series: Cross-Site Request Forgery (CSRF) Vulnerability
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.8EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
23 Dec 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior. An attacker can exploit this vulnerability to trick a client into making an unintentional request to the web server, which will be treated as an authentic request. This vulnerability may lead an attacker to perform operations on behalf of the victimized user.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
Moxa · ioLogik E1200 SeriesWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →