CVE-2024-0555
Last modified
CVE-2024-0555 is a high-severity vulnerability rated 8/10 on the CVSS scale. A Cross-Site Request Forgery (CSRF) vulnerability has been found on WIC1200, affecting version 1.1. An authenticated user could lead another user into executing unwanted actions inside the application they are logged in. EPSS estimates a 0.19% chance of exploitation in the next 30 days.
Description
A Cross-Site Request Forgery (CSRF) vulnerability has been found on WIC1200, affecting version 1.1. An authenticated user could lead another user into executing unwanted actions inside the application they are logged in. This vulnerability is possible due to the lack of propper CSRF token implementation.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Xantech | Wic1200 Firmware | 1.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2024-0555?
How severe is CVE-2024-0555?
How do I fix CVE-2024-0555?
Are you affected by CVE-2024-0555?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
