CVE-2019-25244
Legrand BTicino Driver Manager F454 1.0.51 CSRF and Stored XSS Vulnerabilities
Legrand BTicino Driver Manager F454 1.0.51 contains multiple web vulnerabilities that allow attackers to perform administrative actions without proper request validation. Attackers can exploit cross-site request forgery to change passwords and inject stored cross-site scripting payloads through unvalidated GET parameters.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N
Productos afectados
BTicino S.p.A. · Legrand BTicino Driver Manager F454¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →