Cross-site request forgery (CSRF) vulnerability in util_system.html in Belkin N900 router allows remote attackers to hijack the authentication of administrators for requests that change configuration settings including passwords and remote management ports.
oryginał ENCVSS Vector
AV:N/AC:M/Au:N/C:P/I:P/A:PBelkin N900
HWBelkinwszystkie wersjeBelkin N900 Firmware
OSBelkin1.00.23
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
CWE
Powiązane podatności
CVE-2013-3088CRITICAL9.8PL ✓ten sam produkt
Obejście uwierzytelniania w routerze Belkin N900 przez debugowanie JavaScript
CVE-2013-4655HIGH7.5ten sam produkt
Symlink Traversal vulnerability in Belkin N900 due to misconfiguration in the SMB service.
CVE-2013-3087MEDIUM4.3ten sam produkt
Multiple cross-site scripting (XSS) vulnerabilities in Belkin N900 router allow remote attackers to inject arb...
CVE-2023-27217CRITICAL9.8PL ✓ten sam vendor
Stack-based buffer overflow w Belkin Smart Outlet V2 F7C063 via UPnP
CVE-2022-30105CRITICAL9.8PL ✓ten sam vendor
Belkin N300 Firmware — zdalne command injection z uprawnieniami root