CVE-2015-0115
EUVD-2015-015328.06.2015, 22:59
Cross-site request forgery (CSRF) vulnerability in IBM Leads 7.x, 8.1.0 before 8.1.0.14, 8.2, 8.5.0 before 8.5.0.7.3, 8.6.0 before 8.6.0.8.1, 9.0.0 through 9.0.0.4, 9.1.0 before 9.1.0.6.1, and 9.1.1 before 9.1.1.0.2 allows remote authenticated users to hijack the authentication of customer accounts.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | leads | 7.1.0 |
| ibm | leads | 7.1.1 |
| ibm | leads | 7.5.0 |
| ibm | leads | 8.1.0 |
| ibm | leads | 8.2.0 |
| ibm | leads | 8.5.0 |
| ibm | leads | 8.6.0 |
| ibm | leads | 9.0.0 |
| ibm | leads | 9.1.0 |
| ibm | leads | 9.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration