CVE-2016-7034
The dashbuilder in Red Hat JBoss BPM Suite 6.3.2 does not properly handle CSRF tokens generated during an active session and includes them in query strings, which makes easier for remote attackers to (1) bypass CSRF protection mechanisms or (2) conduct…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.13%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The dashbuilder in Red Hat JBoss BPM Suite 6.3.2 does not properly handle CSRF tokens generated during an active session and includes them in query strings, which makes easier for remote attackers to (1) bypass CSRF protection mechanisms or (2) conduct cross-site request forgery (CSRF) attacks by obtaining an old token.
- CVSS 3.0
- 8.8 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 1.13% probability · 64th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-352
- Affected
- redhat/jboss bpm suite
- Source
- secalert@redhat.com
References
- http://rhn.redhat.com/errata/RHSA-2017-0557.html
- http://www.securityfocus.com/bid/92760Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:0296
- https://bugzilla.redhat.com/show_bug.cgi?id=1373347Issue Tracking
- http://rhn.redhat.com/errata/RHSA-2017-0557.html
- http://www.securityfocus.com/bid/92760Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:0296
- https://bugzilla.redhat.com/show_bug.cgi?id=1373347Issue Tracking
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.