Vulnerabilities > Ncratleos

DATE CVE VULNERABILITY TITLE RISK
2024-02-08 CVE-2023-47020 Cross-Site Request Forgery (CSRF) vulnerability in Ncratleos Terminal Handler 1.5.1
Multiple Cross-Site Request Forgery (CSRF) chaining in NCR Terminal Handler v.1.5.1 allows privileges to be escalated by an attacker through a crafted request involving user account creation and adding the user to an administrator group.
network
low complexity
ncratleos CWE-352
8.8
2024-01-20 CVE-2023-47024 Cross-Site Request Forgery (CSRF) vulnerability in Ncratleos Terminal Handler 1.5.1
Cross-Site Request Forgery (CSRF) in NCR Terminal Handler v.1.5.1 leads to a one-click account takeover.
network
low complexity
ncratleos CWE-352
8.8