ASUS RT-AC* and RT-N* devices with firmware before 3.0.0.4.380.7378 have Login Page CSRF and Save Settings CSRF.
References
Link | Resource |
---|---|
https://www.asus.com/support/Download/11/2/0/161/45/ | Patch Vendor Advisory |
https://wwws.nightwatchcybersecurity.com/2017/05/09/multiple-vulnerabilities-in-asus-routers/ | Third Party Advisory |
https://www.asus.com/support/Download/11/2/0/161/45/ | Patch Vendor Advisory |
https://wwws.nightwatchcybersecurity.com/2017/05/09/multiple-vulnerabilities-in-asus-routers/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 03:28
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.asus.com/support/Download/11/2/0/161/45/ - Patch, Vendor Advisory | |
References | () https://wwws.nightwatchcybersecurity.com/2017/05/09/multiple-vulnerabilities-in-asus-routers/ - Third Party Advisory |
Information
Published : 2017-05-10 05:29
Updated : 2024-11-21 03:28
NVD link : CVE-2017-5891
Mitre link : CVE-2017-5891
CVE.ORG link : CVE-2017-5891
JSON object : View
Products Affected
asus
- rt-ac1750
- rt-ac1750_firmware
CWE
CWE-352
Cross-Site Request Forgery (CSRF)