Web-based Local Management Interface (LMI) of IBM Proventia Network Mail Security System appliance (firmware 1.6 and 2.5) is vulnerable to XSRF attacks. When exploited by an attacker, the identified vulnerabilities could lead to compromising the security of the appliance, including unauthorized alteration of appliance’s settings, DoS attacks, etc.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/93798/MVSA-10-006.txt
Source: https://packetstormsecurity.com/files/93798/Proventia-Network-Mail-Security-System-Cross-Site-Request-Forgery.html