A CSRF issue was discovered on Intelbras IWR 3000N 1.8.7 devices, leading to complete control of the router, as demonstrated by v1/system/user.
References
Link | Resource |
---|---|
https://medium.com/@rsantos_14778/csrf-cve-2019-19995-96c1a2dcc182 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-12-26 10:15
Updated : 2020-01-15 06:52
NVD link : CVE-2019-19995
Mitre link : CVE-2019-19995
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
intelbras
- iwr_3000n_firmware
- iwr_3000n