Cross-site request forgery (CSRF) vulnerability in Thomson TWG87OUIR allows remote attackers to hijack the authentication of unspecified victims for requests that change passwords via the Password and PasswordReEnter parameters to goform/RgSecurity.
References
Configurations
History
21 Nov 2024, 02:10
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/show/osvdb/108397 - | |
References | () http://packetstormsecurity.com/files/127244/Thomson-TWG87OUIR-Cross-Site-Request-Forgery.html - Exploit | |
References | () http://www.exploit-db.com/exploits/33866 - Exploit |
Information
Published : 2014-07-03 14:55
Updated : 2024-11-21 02:10
NVD link : CVE-2014-4716
Mitre link : CVE-2014-4716
CVE.ORG link : CVE-2014-4716
JSON object : View
Products Affected
thomson
- twg87ouir
CWE
CWE-352
Cross-Site Request Forgery (CSRF)