High severity8.8NVD Advisory· Published Apr 20, 2016· Updated Jun 17, 2026
CVE-2016-0891
CVE-2016-0891
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remote attackers to hijack the authentication of administrators.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:emc:vipr_srm:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:emc:vipr_srm:*:*:*:*:*:*:*:*range: <=3.6.4
- (no CPE)range: <3.7
Patches
Vulnerability mechanics
References
6- packetstormsecurity.com/files/136837/EMC-ViPR-SRM-Cross-Site-Request-Forgery.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/39738/nvdExploitThird Party AdvisoryVDB Entry
- www.securify.nl/advisory/SFY20141109/emc_m_r__watch4net__lacks_c%20ross_site_request_forgery_protection.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/bugtraq/2016/Apr/106nvdThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2016/Apr/89nvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/archive/1/538207/100/0/threadednvd
News mentions
0No linked articles in our index yet.