CVE-2013-0717

Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:h:nec:atermwr9500n:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwr8600n:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwr8160n:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwm3450rn:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwr8370n:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwm3600r:-:*:*:*:*:*:*:*

Information

Published : 2013-03-19 11:55

Updated : 2013-03-20 21:00


NVD link : CVE-2013-0717

Mitre link : CVE-2013-0717


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

nec

  • atermwr8160n
  • atermwr8370n
  • atermwm3600r
  • atermwr9500n
  • atermwm3450rn
  • atermwr8600n