#VU25490 Cross-site request forgery in Cisco Data Center Network Manager - CVE-2020-3114
Published: February 20, 2020
Cisco Data Center Network Manager
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform cross-site request forgery attacks.
The vulnerability exists due to insufficient validation of the HTTP request origin in the web-based management interface. A remote attacker can trick the victim to visit a specially crafted web page and follow a malicious link while having an active session on an affected device.