Cross-site request forgery (CSRF) vulnerability in Ilient SysAid 4.5.03 and 4.5.04 allows remote attackers to perform some actions as administrators, as demonstrated by changing the administrator password. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
| Software | From | Fixed in |
|---|---|---|
| ilient / sysaid | 4.5.04 | 4.5.04.x |
| ilient / sysaid | 4.5.03 | 4.5.03.x |