CVE-2020-28858

Publication date

2020-12-14 18:58:03

Family

mitre

State

PUBLISHED

Description

OpenAsset Digital Asset Management (DAM) through 12.0.19 does not correctly verify whether a request made to the application was intentionally made by the user, allowing for cross-site request forgery attacks on all user functions.