Required CVE Record Information
Description
Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
3.1 | LOW | 3.0 | CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N |
Credits
- @laz0rde (https://hackerone.com/laz0rde) finder
References 1 Total
- security-advisory.acronis.com: SEC-4083 vendor-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 1 Total
- security-advisory.acronis.com: SEC-4083 vendor-advisoryx_transferred