UIM VULNERABILITY:CWE-352
search cancel

UIM VULNERABILITY:CWE-352

book

Article ID: 393530

calendar_today

Updated On:

Products

DX Unified Infrastructure Management (Nimsoft / UIM)

Issue/Introduction

 The following vulnerability may impact UIM 23.4

 Cross-Site Request Forgery (CSRF) (CWE ID 352)

Environment

Release: UIM 20.4*/23.4*

Resolution

We will be planning to implement the nonce functionality in the content security policy. This will be available with UIM 23.4 CU5 (July 2025) release.