SMA Cluster Controller Cross-Site Request Forgery Vulnerability
CVE-2024-1889
8.8HIGH
What is CVE-2024-1889?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the SMA Cluster Controller, specifically in version 01.05.01.R. This security flaw enables attackers to craft a malicious link capable of being sent to authenticated users. Upon clicking the link, the malicious action is executed with the user's permissions on the compromised device, thereby potentially allowing unauthorized actions and abuse of user accounts.
Affected Version(s)
SMA Cluster Controller 01.05.01.R