CVE-2015-0116
Published Jun 28, 2015
Last updated 8 years ago
Overview
- Description
- IBM Leads 7.x, 8.1.0 before 8.1.0.14, 8.2, 8.5.0 before 8.5.0.7.3, 8.6.0 before 8.6.0.8.1, 9.0.0 through 9.0.0.4, 9.1.0 before 9.1.0.6.1, and 9.1.1 before 9.1.1.0.2 does not properly restrict the addition of links, which makes it easier for remote authenticated users to conduct cross-site request forgery (CSRF) attacks via unspecified vectors.
- Source
- psirt@us.ibm.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 3.5
- Impact score
- 2.9
- Exploitability score
- 6.8
- Vector string
- AV:N/AC:M/Au:S/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-74
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:leads:7.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCBAD574-7359-4277-8ECA-0D074634AE3E" }, { "criteria": "cpe:2.3:a:ibm:leads:7.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A6ABA9D9-CECA-4F65-8850-8E934118997C" }, { "criteria": "cpe:2.3:a:ibm:leads:7.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C0983C0-8A4E-4EA5-8B4C-AEB7629CDC07" }, { "criteria": "cpe:2.3:a:ibm:leads:8.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7DCE555E-DF69-4C23-971B-C11E14BB6EB1" }, { "criteria": "cpe:2.3:a:ibm:leads:8.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A706D50A-92BC-4D8D-8403-21686327ADF9" }, { "criteria": "cpe:2.3:a:ibm:leads:8.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F99462BD-3942-4C49-B6A4-FD95CEE64629" }, { "criteria": "cpe:2.3:a:ibm:leads:8.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E128B3BE-BB38-4790-952B-A12F25A4D591" }, { "criteria": "cpe:2.3:a:ibm:leads:9.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FDF0432E-9A53-462E-9CEA-957C629BA125" }, { "criteria": "cpe:2.3:a:ibm:leads:9.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "04EE5483-58FA-4B68-B5CB-74CEF748CCC9" }, { "criteria": "cpe:2.3:a:ibm:leads:9.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8F830E08-F5DE-4A69-89F4-1BA4DF225A9E" } ], "operator": "OR" } ] } ]