CVE-2019-25313
EUVD-2019-1950611.02.2026, 21:16
FlexNet Publisher 11.12.1 contains a cross-site request forgery vulnerability that allows attackers to create administrative user accounts without authentication. Attackers can craft a malicious HTML form to trick authenticated users into submitting a request that creates a new local admin account with a predefined password.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| flexera | flexnet_publisher | 11.12.1 | CNA |
Common Weakness Enumeration