NA

CVE-2020-23587

Published: 23/11/2022 Updated: 23/11/2022
CVSS v3 Base Score: 3.1 | Impact Score: 1.4 | Exploitability Score: 1.6
VMScore: 0

Vulnerability Summary

A vulnerability found in the OPTILINK OP-XT71000N Hardware Version: V2.2 , Firmware Version: OP_V3.3.1-191028 allows an unauthenticated, remote malicious user to conduct a cross-site request forgery (CSRF) attack to men in the middle attack by adding New Routes in RoutingConfiguration on " /routing.asp ".

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

optilinknetwork op-xt71000n_firmware 3.3.1-191028

Github Repositories

Men in the middle attack is possible through CSRF

CVE-2020-23587 OPTILINK E-PON "MODEL NO: OP-XT71000N" with "HARDWARE VERSION: V22"; & "FIRMWARE VERSION: OP_V331-191028" A vulnerability found in the "OPTILINK OP-XT71000N Hardware Version: V22 , Firmware Version: OP_V331-191028" allows an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack