6.8
CVSSv2

CVE-2014-3792

Published: 20/05/2014 Updated: 21/05/2014
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in Beetel 450TC2 Router with firmware TX6-0Q-005_retail allows remote malicious users to hijack the authentication of administrators for requests that change the administrator password via the uiViewTools_Password and uiViewTools_PasswordConfirm parameters to Forms/tools_admin_1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

beetel 450tc2_router_firmware tx6-0q-005_retail

beetel 450tc2_router -

Exploits

​​<!-- # Exploit Title: Beetel 450TC2 Router Admin Password Cross Site Request Forgery Vulnerability # Date: 30/04/2014 # Exploit Author: shyamkumar somana # Vendor Homepage: wwwbeetelin # Version: 450TC2 - Firmware version : TX6-0Q-005_retail # Tested on: Windows 8 #Beetel 450TC2 Router is vulnerable for cross site request forgery vulner ...