Cross-site request forgery (CSRF) vulnerability in NETGEAR switching hubs (GS716Tv2 Firmware version 5.4.2.30 and earlier, and GS724Tv3 Firmware version 5.4.2.30 and earlier) allow remote attackers to hijack the authentication of administrators and alter the settings of the device via unspecified vectors.
References
Link | Resource |
---|---|
http://jvn.jp/en/jp/JVN29903998/index.html | Third Party Advisory |
https://jvn.jp/en/jp/JVN29903998/index.html | Third Party Advisory |
https://www.netgear.com/support/product/gs716Tv2.aspx | Patch Vendor Advisory |
https://www.netgear.com/support/product/gs724tv3.aspx | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: jpcert
Published: 2020-08-28T04:05:28
Updated: 2020-08-28T04:06:14
Reserved: 2020-01-06T00:00:00
Link: CVE-2020-5621
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-08-28T05:15:11.277
Modified: 2020-09-04T16:23:36.870
Link: CVE-2020-5621
JSON object: View
Redhat Information
No data.
CWE