CVE-2012-2959
Cross-site request forgery (CSRF) vulnerability in password-manager/changePasswords.do in BMC Identity Management Suite
Cross-site request forgery (CSRF) vulnerability in password-manager/changePasswords.do in BMC Identity Management Suite 7.5.00.103 allows remote attackers to hijack the authentication of administrators for requests that change passwords.
MEDIUM · CVSS 5.1
EPSS 0.00308
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0