CVE-2013-3068

Cross-site request forgery (CSRF) vulnerability in apply.cgi in Linksys WRT310Nv2 2.0.0.1 allows remote attackers to hijack the authentication of administrators for requests that change passwords and modify remote management ports.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:cisco:linksys_wrt310n_router_firmware:2.0.0.1:*:*:*:*:*:*:*
cpe:2.3:h:cisco:linksys_wrt350n:2.0:*:*:*:*:*:*:*

History

21 Nov 2024, 01:52

Type Values Removed Values Added
References () http://securityevaluators.com/knowledge/case_studies/routers/linksys_wrt310v2.php - () http://securityevaluators.com/knowledge/case_studies/routers/linksys_wrt310v2.php -
References () http://securityevaluators.com/knowledge/case_studies/routers/soho_router_hacks.php - Exploit () http://securityevaluators.com/knowledge/case_studies/routers/soho_router_hacks.php - Exploit

Information

Published : 2014-09-29 22:55

Updated : 2024-11-21 01:52


NVD link : CVE-2013-3068

Mitre link : CVE-2013-3068

CVE.ORG link : CVE-2013-3068


JSON object : View

Products Affected

cisco

  • linksys_wrt310n_router_firmware
  • linksys_wrt350n
CWE
CWE-352

Cross-Site Request Forgery (CSRF)