
CVE-2013-4876
https://notcve.org/view.php?id=CVE-2013-4876
18 Jul 2013 — The Verizon Wireless Network Extender SCS-2U01 has a hardcoded password for the root account, which makes it easier for physically proximate attackers to obtain administrative access by leveraging a login prompt. El Verizon Wireless Network Extender SCS-26UC4 tiene un password embebido para la cuenta de root, lo que hace más facil para un atacante físicamente próximo obtener acceso administrativo mediante el aprovechamiento de un prompt de login. • http://www.kb.cert.org/vuls/id/458007 • CWE-255: Credentials Management Errors •

CVE-2013-0126 – Verizon Fios Router MI424WR-GEN3I - Cross-Site Request Forgery
https://notcve.org/view.php?id=CVE-2013-0126
21 Mar 2013 — Multiple cross-site request forgery (CSRF) vulnerabilities in index.cgi on the Verizon FIOS Actiontec MI424WR-GEN3I router with firmware 40.19.36 allow remote attackers to hijack the authentication of administrators for requests that (1) add administrative accounts via the username and user_level parameters or (2) enable remote administration via the is_telnet_primary and is_telnet_secondary parameters. Múltiples vulnerabilidades de falsificación de petición en sitios cruzados (CSRF) en index.cgi en el rout... • https://www.exploit-db.com/exploits/24860 • CWE-352: Cross-Site Request Forgery (CSRF) •