1 results (0.001 seconds)

CVSS: 6.8EPSS: 0%CPEs: 6EXPL: 0

Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device. Múltiples vulnerabilidades CSRF en la utilidad de gestión web de los enrutadores NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, y AtermWM3450RN, permite a los atacantes remotos secuestrar la autenticación de los administradores para peticiones que (1)inicializan opciones o (2) reinician el dispositivo. • http://jpn.nec.com/security-info/secinfo/nv13-005.html http://jvn.jp/en/jp/JVN59503133/6443/index.html http://jvn.jp/en/jp/JVN59503133/index.html http://jvndb.jvn.jp/jvndb/JVNDB-2013-000024 • CWE-352: Cross-Site Request Forgery (CSRF) •