Cross-site request forgery (CSRF) vulnerability in Knowledge versions prior to v1.7.0 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
📦
knowledge
Vendor: support-project
Actively Exploited
0
CISA KEV List
PoC / Exploits
2
Code Available
Total RCEs
0
Remote Access
Total CVEs
18
Total Indexed
Avg. EPSS
15.75%
Exploit Prob.
Security Vulnerability Index
Page 2 / 2
8.8
CVSS
Severity: HIGH
6.5
CVSS
Unspecified vulnerability in the Oracle Knowledge component in Oracle Siebel CRM 8.5.x allows remote attackers to affect confidentiality and integrity via vectors related to Information Manager Console.
Severity: MEDIUM
4.3
CVSS
Unspecified vulnerability in the Oracle Knowledge component in Oracle Siebel CRM 8.5.x allows remote authenticated users to affect confidentiality via vectors related to Information Manager Console.
Severity: MEDIUM