CVE-2019-13497: CSRF
Published Nov 4, 2019
·Updated
One Identity Cloud Access Manager before 8.1.4 Hotfix 1 allows CSRF for logout requests.
Affected Software
2 affected components
Oneidentity Cloud Access Manager<8.1.4
Oneidentity Cloud Access Manager=8.1.4
Event History
Nov 4, 2019
CVE Published
via MITRE·05:08 PM
Data Sourced
via MITRE·05:08 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-13497?
The severity of CVE-2019-13497 is medium.
2
What is the vulnerability ID for One Identity Cloud Access Manager?
The vulnerability ID for One Identity Cloud Access Manager is CVE-2019-13497.
3
What software versions are affected by CVE-2019-13497?
The affected software versions of CVE-2019-13497 are One Identity Cloud Access Manager up to and including version 8.1.4.
4
How can I fix CVE-2019-13497?
To fix CVE-2019-13497, apply the hotfix 1 for One Identity Cloud Access Manager version 8.1.4.
5
What is the Common Weakness Enumeration (CWE) for CVE-2019-13497?
The Common Weakness Enumeration (CWE) for CVE-2019-13497 is CWE-352.