Security Advisory

CVE-2020-14203

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-06-22 12:47:06
Last updated 2024-08-04 12:39:36
Assigner mitre
State PUBLISHED

Description

WebFOCUS Business Intelligence 8.0 (SP6) allows a Cross-Site Request Forgery (CSRF) attack against administrative users within the /ibi_apps/WFServlet(.ibfs) endpoint. The impact may be creation of an administrative user. It can also be exploited in conjunction with CVE-2016-9044.