CVE-2020-12123 - CERT CVE
ID CVE-2020-12123
Sažetak CSRF vulnerabilities in the /cgi-bin/ directory of the WAVLINK WN530H4 M30H4.V5030.190403 allow an attacker to remotely access router endpoints, because these endpoints do not contain CSRF tokens. If a user is authenticated in the router portal, then this attack will work.
Reference
CVSS
Base: 7.8
Impact: 7.8
Exploitability:8.6
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL COMPLETE
CVSS vektor AV:N/AC:M/Au:N/C:N/I:P/A:C
Zadnje važnije ažuriranje 08-10-2020 - 01:09
Objavljeno 02-10-2020 - 09:15