Loading
An issue was discovered in Aviatrix Controller before 5.4.1204. An API call on the web interface lacked a session token check to control access, leading to CSRF.
Use CWE-352, Aviatrix vendor hub and Controller product page to widen CVE-2020-13412 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-50603, CVE-2021-40870 and CVE-2020-26553 for nearby disclosures in the same product family.