RSS   Vulnerabilities for 'Airstation whr-g54s'   RSS

2007-09-11
 
CVE-2007-4822

CWE-352
 

 
Cross-site request forgery (CSRF) vulnerability in the device management interface in Buffalo AirStation WHR-G54S 1.20 allows remote attackers to make configuration changes as an administrator via HTTP requests to certain HTML pages in the res parameter with an inp req parameter to cgi-bin/cgi, as demonstrated by accessing (1) ap.html and (2) filter_ip.html.

 

 >>> Vendor: Buffalotech 57 Products
Terastation hd-htgl firmware
Airstation whr-g54s
Bbr-4hg firmware
Bbr-4mg firmware
Bhr-4rv firmware
Fs-g54 firmware
Wer-a54g54 firmware
Wer-ag54 firmware
Wer-am54g54 firmware
Wer-amg54 firmware
Whr-am54g54 firmware
Whr-amg54 firmware
Whr-ampg firmware
Whr-g54s firmware
Whr-g firmware
Whr-hp-ampg firmware
Whr-hp-g54 firmware
Whr-hp-g firmware
Wzr-ampg144nh firmware
Wzr-ampg300nh firmware
Wzr-g144n firmware
Wzr-g144nh firmware
Wzr2-g300n firmware
As-100
Bbr-4hg
Bbr-4mg
Bhr-4rv
Fs-g54
Wer-a54g54
Wer-ag54
Wer-am54g54
Wer-amg54
Whr-am54g54
Whr-amg54
Whr-ampg
Whr-g
Whr-g54s
Whr-hp-ampg
Whr-hp-g
Whr-hp-g54
Wzr-ampg144nh
Wzr-ampg300nh
Wzr-g144n
Wzr-g144nh
Wzr2-g300n
Bhr-4grv2 firmware
Wex-300 firmware
Whr-1166dhp firmware
Whr-300hp2 firmware
Whr-600d firmware
Whr-600dhp firmware
Wmr-300 firmware
Wsr-600dhp firmware
Airstation extreme n600
Airstation extreme n600 firmware
Wmr-433 firmware
Wsr-1166dhp firmware


Copyright 2017, cxsecurity.com