CSRF in Ercom Cryptobox administration console allows attacker to trigger some actions on behalf of a Cryptobox administrator. The attack requires the administrator to browse a malicious web site or to click a link while he has an open session on the administration console.
CVSS
No CVSS.
References
| Link | Resource |
|---|---|
| https://info.cryptobox.com/doc/v4.39/4.39.en/#fix2 |
Configurations
No configuration.
History
No history.
Information
Published : 2025-12-17 14:15
Updated : 2025-12-18 15:07
NVD link : CVE-2025-14266
Mitre link : CVE-2025-14266
CVE.ORG link : CVE-2025-14266
JSON object : View
Products Affected
No product.
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
