CVE-2025-13671
Cross Site request forgery vulnerability discovered in OpenText WSM Management Server.
Cross-Site Request Forgery (CSRF) vulnerability in OpenText™ Web Site Management Server allows Cross Site Request Forgery. The vulnerability could make a user, with active session inside the product, click on a page that contains this malicious HTML triggering to perform changes unconsciously.
This issue affects Web Site Management Server: 16.7.0, 16.7.1.
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:P/VC:N/VI:H/VA:N/SC:L/SI:N/SA:N/S:P/AU:N/R:U/V:D/RE:H/U:Red
Produtos afetados
OpenText™ · Web Site Management ServerQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →