CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. See the original NVD description below for full technical details.
CVE
CVE-2020-26516
Severity
HIGH
CVSS
8.8
EPSS
0.85%
Original NVD Description
A CSRF issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. Requests sent to the server that trigger actions do not contain a CSRF token and can therefore be entirely predicted allowing attackers to cause the victim's browser to execute undesired actions in the web application through crafted requests.
Related CVEs
Other vulnerabilities affecting the same vendor(s)