CVE-2020-10771
02.06.2021, 12:15
A flaw was found in Infinispan version 10, where it is possible to perform various actions that could have side effects using GET requests. This flaw allows an attacker to perform a cross-site request forgery (CSRF) attack.
Vendor | Product | Version |
---|---|---|
infinispan | infinispan-server-rest | 10.0.0 |
redhat | data_grid | 8.0 |
netapp | oncommand_insight | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration