Cross-Site Request Forgery Vulnerability in Cisco TelePresence Serial Gateway
CVE-2015-4253
Currently unrated
Summary
A Cross-Site Request Forgery (CSRF) vulnerability exists in Cisco TelePresence Serial Gateway devices running software version 1.0(1.42). This issue allows remote attackers to impersonate authenticated users and perform unauthorized actions on their behalf. Specifically, this flaw can be exploited to hijack user authentication, leveraging the victim's session privileges, which may lead to significant security risks within the network environment. Users are encouraged to update their software to mitigate this vulnerability.
References
Timeline
Vulnerability published
Vulnerability Reserved