Cross-site request forgery (CSRF) vulnerability in Alcatel-Lucent CellPipe 7130 RG 5Ae.M2013 HOL with firmware 1.0.0.20h.HOL allows remote attackers to hijack the authentication of administrators for requests that create a user account via an add_user action in a request to password.cmd.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2015-06-23 07:59
Updated : 2016-12-07 10:13
NVD link : CVE-2015-4586
Mitre link : CVE-2015-4586
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
alcatel-lucent
- cellpipe_7130_rg_5ae.m2013_hol_firmware
- cellpipe_7130_rg_5ae.m2013_hol