CVE-2009-1797
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Multiple cross-site request forgery (CSRF) vulnerabilities on the Network Management Card (NMC) on American Power Conversion (APC) Switched Rack PDU (aka Rack Mount Power Distribution) devices and other devices allow remote attackers to hijack the authentication of (1) administrator or (2) device users for requests that create new administrative users or have unspecified other impact.
Múltiples vulnerabilidades de falsificación de petición en sitios cruzados (CSRF) en Network Management Card (NMC) para dispositivos American Power Conversion (APC) Switched Rack PDU (también conocido como Rack Mount Power Distribution) y otros dispositivos permite a atacantes remotos secuestrar la autenticación de (1) administradores o (2) usuarios del dispositivo para hacer peticiones que crean nuevos usuarios administradores o tienen otros impactos no especificados.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2009-05-26 CVE Reserved
- 2009-12-28 CVE Published
- 2024-09-17 CVE Updated
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-352: Cross-Site Request Forgery (CSRF)
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://holisticinfosec.org/content/view/111/45 | X_refsource_misc | |
http://www.kb.cert.org/vuls/id/166739 | Third Party Advisory |
|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://nam-en.apc.com/cgi-bin/nam_en.cfg/php/enduser/std_adp.php?p_faqid=10887 | 2010-06-29 | |
http://secunia.com/advisories/37744 | 2010-06-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apc Search vendor "Apc" | Network Management Card Search vendor "Apc" for product "Network Management Card" | * | - |
Affected
| in | Apc Search vendor "Apc" | Switched Rack Pdu Search vendor "Apc" for product "Switched Rack Pdu" | * | - |
Affected
|