Unrated severityNVD Advisory· Published Jun 5, 2015· Updated May 6, 2026
CVE-2015-3950
CVE-2015-3950
Description
Cross-site request forgery (CSRF) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to hijack the authentication of admins for requests that select a different default admin user via a GET request.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- ics-cert.us-cert.gov/advisories/ICSA-15-155-01nvdThird Party AdvisoryUS Government Resource
- www.securityfocus.com/bid/75032nvd
News mentions
0No linked articles in our index yet.