Cross-site request forgery in cp06_wifi_m_nocifr.cgi in the administrator panel in TELECOM ITALIA Alice Gate2 Plus Wi-Fi allows remote attackers to hijack the authentication of administrators for requests that disable Wi-Fi encryption via certain values for the wlChannel and wlRadioEnable parameters.
Advisories
Source ID Title
EUVD EUVD EUVD-2008-7124 Cross-site request forgery in cp06_wifi_m_nocifr.cgi in the administrator panel in TELECOM ITALIA Alice Gate2 Plus Wi-Fi allows remote attackers to hijack the authentication of administrators for requests that disable Wi-Fi encryption via certain values for the wlChannel and wlRadioEnable parameters.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T11:56:14.439Z

Reserved: 2009-09-03T00:00:00

Link: CVE-2008-7165

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2009-09-04T10:30:01.860

Modified: 2025-04-09T00:30:58.490

Link: CVE-2008-7165

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses