Cross-Site Request Forgery Vulnerability in Cisco TelePresence Serial Gateway
CVE-2015-4253

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
10 July 2015

Summary

A Cross-Site Request Forgery (CSRF) vulnerability exists in Cisco TelePresence Serial Gateway devices running software version 1.0(1.42). This issue allows remote attackers to impersonate authenticated users and perform unauthorized actions on their behalf. Specifically, this flaw can be exploited to hijack user authentication, leveraging the victim's session privileges, which may lead to significant security risks within the network environment. Users are encouraged to update their software to mitigate this vulnerability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.