CVE-2021-20403
3.1LOW
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 11 February 2021
Summary
IBM Security Verify Information Queue 1.0.6 and 1.0.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
Affected Version(s)
Security Verify Information Queue 1.0.6
Security Verify Information Queue 1.0.7
References
CVSS V3.1
Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved