5.4
CVSSv2

CVE-2013-5039

Published: 30/12/2013 Updated: 30/12/2013
CVSS v2 Base Score: 5.4 | Impact Score: 6.4 | Exploitability Score: 5.5
VMScore: 545
Vector: AV:A/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in goform/wlanBasicSecurity on the HOT HOTBOX router with software 2.1.11 allows remote malicious users to hijack the authentication of administrators for requests that change the WiFi Security field to Deactivated via the WifiSecurity parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

hot hotbox_router_firmware 2.1.11

hot hotbox_router -

Exploits

+------------------------------------------------------------------------------+ | HOTBOX is the leading router/modem appliance of | | HOT Cable communication company in israel | | The Appliance is manufactured by SAGEMCOM | | and carries the model name F@st 3184 | +------------------------------------- ...
HOTBOX router/modem version 2111 suffers from cross site request forgery, denial of service, script injection, and directory traversal vulnerabilities Denial of service and cross site request forgery proof of concepts included ...