4.3
CVSSv2

CVE-2019-13497

Published: 04/11/2019 Updated: 05/11/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

One Identity Cloud Access Manager prior to 8.1.4 Hotfix 1 allows CSRF for logout requests.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oneidentity cloud access manager 8.1.4

oneidentity cloud access manager

Github Repositories

CVE-2019-13497 Exploit Title: Cross Site Request Forgery (CSRF) Date: 07/10/2019 Exploit Author: Furqan Khan Vendor Homepage: wwwoneidentitycom/ Software Link: wwwoneidentitycom/products/cloud-access-manager/ Version: 813 Tested on: Kali Linux , Windows 7 ,Ubantu 1604 To exploit this vulnerability an attacker can simply create a HTML form that would submi