Westermo Lynx 206-F2G Cross-Site Request Forgery
Vulnerability Description
The cross-site request forgery token in the request may be predictable or easily guessable allowing attackers to craft a malicious request, which could be triggered by a victim unknowingly. In a successful CSRF attack, the attacker could lead the victim user to carry out an action unintentionally.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-38579
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Aarón Flecha Menéndez, Iván Alonso Álvarez and Víctor Bello Cuevas reported these vulnerabilities to CISA.
More from Westermo
View All →Affected Vendor
Westermo
View all reports →