CVE-2013-0717

Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device.
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:nec:atermwm3450rn:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwm3600r:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwr8160n:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwr8370n:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwr8600n:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:atermwr9500n:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-03-19 18:55

Updated : 2023-12-10 11:16


NVD link : CVE-2013-0717

Mitre link : CVE-2013-0717

CVE.ORG link : CVE-2013-0717


JSON object : View

Products Affected

nec

  • atermwr8600n
  • atermwr8370n
  • atermwm3450rn
  • atermwr8160n
  • atermwr9500n
  • atermwm3600r
CWE
CWE-352

Cross-Site Request Forgery (CSRF)