CVE-2020-10771
EUVD-2020-318502.06.2021, 12:15
A flaw was found in Infinispan version 10, where it is possible to perform various actions that could have side effects using GET requests. This flaw allows an attacker to perform a cross-site request forgery (CSRF) attack.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| infinispan | infinispan-server-rest | 10.0.0 |
| redhat | data_grid | 8.0 |
| netapp | oncommand_insight | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration