Today > | 16 High | 14 Medium vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-45504

Sept. 10, 2024, 12:09 p.m.

Product(s) Impacted

Alps System Integration products

OEM products

Description

Cross-site request forgery (CSRF) vulnerability in multiple Alps System Integration products and the OEM products allow a remote unauthenticated attacker to hijack the authentication of the user and to perform unintended operations if the user views a malicious page while logged in.

Weaknesses

Date

Published: Sept. 10, 2024, 5:15 a.m.

Last Modified: Sept. 10, 2024, 12:09 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

vultures@jpcert.or.jp

References

https://alsifaq.dga.jp/ vultures@jpcert.or.jp

https://jvn.jp/ vultures@jpcert.or.jp

https://success.trendmicro.com/ vultures@jpcert.or.jp

https://www.motex.co.jp/ vultures@jpcert.or.jp