Vulnerability Details CVE-2022-35656
Pega Platform from 8.3 to 8.7.3 vulnerability may allow authenticated security administrators to alter CSRF settings directly.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.0%
CVSS Severity
CVSS v3 Score 6.8
Products affected by CVE-2022-35656
-
cpe:2.3:a:pega:pega_platform:8.3
-
cpe:2.3:a:pega:pega_platform:8.3.0
-
cpe:2.3:a:pega:pega_platform:8.3.1
-
cpe:2.3:a:pega:pega_platform:8.3.2
-
cpe:2.3:a:pega:pega_platform:8.3.3
-
cpe:2.3:a:pega:pega_platform:8.4
-
cpe:2.3:a:pega:pega_platform:8.4.0.237
-
cpe:2.3:a:pega:pega_platform:8.4.1
-
cpe:2.3:a:pega:pega_platform:8.4.2
-
cpe:2.3:a:pega:pega_platform:8.5
-
cpe:2.3:a:pega:pega_platform:8.5.1
-
cpe:2.3:a:pega:pega_platform:8.5.2
-
cpe:2.3:a:pega:pega_platform:8.6