← Back

CVE-2013-3395

nvd nist
Published: Jul 2, 2013Modified: Apr 29, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Cross-site request forgery (CSRF) vulnerability in the web framework on Cisco IronPort Web Security Appliance (WSA) devices, Email Security Appliance (ESA) devices, and Content Security Management Appliance (SMA) devices allows remote attackers to hijack the authentication of arbitrary users, aka Bug IDs CSCuh70263, CSCuh70323, and CSCuh26634.

Affected (3)

3 products
Email Security Appliance Firmware
Web Security Appliance
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions

References (2)

Timeline

No history available yet.