9.3
CVSSv2

CVE-2021-38480

Published: 19/10/2021 Updated: 22/10/2021
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 are vulnerable to cross-site request forgery when unauthorized commands are submitted from a user the web application trusts. This may allow an malicious user to remotely perform actions on the router’s management portal, such as making configuration changes, changing administrator credentials, and running system commands on the router.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

inhandnetworks ir615_firmware 2.3.0.r4724

inhandnetworks ir615_firmware 2.3.0.r4870