Security Advisory

CVE-2021-23849

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-08-05 19:23:32
Last updated 2024-09-16 17:23:27
Assigner bosch
State PUBLISHED

Description

A vulnerability in the web-based interface allows an unauthenticated remote attacker to trigger actions on an affected system on behalf of another user (CSRF - Cross Site Request Forgery). This requires the victim to be tricked into clicking a malicious link or opening a malicious website while being logged in into the camera.