CyberRota Analysis
AI analysis pending.
CVE
CVE-2016-0377
Severity
MEDIUM
CVSS
4.3
EPSS
1.54%
Original NVD Description
The Administrative Console in IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.x before 8.0.0.13, and 8.5.x before 8.5.5.10 mishandles CSRFtoken cookies, which allows remote authenticated users to obtain sensitive information via unspecified vectors.