CVE-2014-10027
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DAP-1360 router with firmware 2.5.4 and earlier allow remote attackers to hijack the authentication of unspecified users for requests that (1) change the MAC filter restrict mode, (2) add a MAC address to the filter, or (3) remove a MAC address from the filter via a crafted request to index.cgi.
Affected (1)
Products: Dlink: Dap 1360 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.5.4 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dap 1360 | All versions |
References (4)
Timeline
No history available yet.