CVE-2017-14011
17.10.2017, 22:29
A Cross-Site Request Forgery issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The application does not sufficiently verify requests, making it susceptible to cross-site request forgery. This may allow an attacker to execute unauthorized code, resulting in changes to the configuration of the device.
Vendor | Product | Version |
---|---|---|
prominent | multiflex_m10a_controller_firmware | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration