CVE-2021-32403

Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of security mechanisms for token protection and unsafe inputs and modules.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:intelbras:rf_301k_firmware:1.1.2:*:*:*:*:*:*:*
cpe:2.3:h:intelbras:rf_301k:-:*:*:*:*:*:*:*

History

01 Jan 2022, 17:52

Type Values Removed Values Added
References (MISC) http://packetstormsecurity.com/files/163023/Intelbras-Router-RF-301K-Cross-Site-Request-Forgery.html - (MISC) http://packetstormsecurity.com/files/163023/Intelbras-Router-RF-301K-Cross-Site-Request-Forgery.html - Exploit, Third Party Advisory, VDB Entry

09 Jun 2021, 16:15

Type Values Removed Values Added
References
  • (MISC) http://packetstormsecurity.com/files/163023/Intelbras-Router-RF-301K-Cross-Site-Request-Forgery.html -

25 May 2021, 13:54

Type Values Removed Values Added
CWE CWE-352
CPE cpe:2.3:o:intelbras:rf_301k_firmware:1.1.2:*:*:*:*:*:*:*
cpe:2.3:h:intelbras:rf_301k:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 6.8
v3 : 8.8
References (MISC) https://www.youtube.com/watch?v=1Ed-2xBFG3M - (MISC) https://www.youtube.com/watch?v=1Ed-2xBFG3M - Exploit, Third Party Advisory

17 May 2021, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-05-17 13:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-32403

Mitre link : CVE-2021-32403

CVE.ORG link : CVE-2021-32403


JSON object : View

Products Affected

intelbras

  • rf_301k_firmware
  • rf_301k
CWE
CWE-352

Cross-Site Request Forgery (CSRF)