SOCA Access Control System 180612 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without proper request validation. Attackers can craft malicious web pages that submit forged requests to create admin accounts by tricking logged-in users into visiting a malicious site.
Metrics
Affected Vendors & Products
References
History
Wed, 24 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SOCA Access Control System 180612 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without proper request validation. Attackers can craft malicious web pages that submit forged requests to create admin accounts by tricking logged-in users into visiting a malicious site. | |
| Title | SOCA Access Control System 180612 Cross-Site Request Forgery via Admin Interface | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-24T20:27:27.630Z
Reserved: 2025-12-24T14:28:02.432Z
Link: CVE-2018-25127
Updated: 2025-12-24T20:15:33.536Z
Status : Received
Published: 2025-12-24T20:15:46.193
Modified: 2025-12-24T21:15:57.400
Link: CVE-2018-25127
No data.
OpenCVE Enrichment
No data.