Vulnerabilities > 3Xlogic > Infinias Access Control Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-11-14 CVE-2019-18651 Cross-Site Request Forgery (CSRF) vulnerability in 3Xlogic Infinias Access Control Firmware 6.6.9586.0
A cross-site request forgery (CSRF) vulnerability in 3xLogic Infinias Access Control through 6.6.9586.0 allows remote attackers to execute malicious and unauthorized actions (e.g., delete application users) by sending a crafted HTML document or encoded URL to a user that the website trusts.
network
low complexity
3xlogic CWE-352
6.5