CVE-2013-6346: Novell Zenworks Configuration Management
Medium severity, CVSS 6.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in the ZCC page in Novell ZENworks Configuration Management (ZCM) before 11.2.4 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Affected products
- Novell Zenworks Configuration Management: up to and including 11.2.3; version 10.2 only; version 10.3 only; version 10.3.1 only; version 10.3.2 only; version 10.3.3 only; …
Published 2013-11-02. Last modified 2026-06-17.