Security Advisory

CVE-2024-8458

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-30 07:45:34
Last updated 2024-09-30 16:47:20
Assigner twcert
State PUBLISHED

Description

Certain switch models from PLANET Technology have a web application that is vulnerable to Cross-Site Request Forgery (CSRF). An unauthenticated remote attacker can trick a user into visiting a malicious website, allowing the attacker to impersonate the user and perform actions on their behalf, such as creating accounts.