Multiple cross-site request forgery (CSRF) vulnerabilities in the management screen on Buffalo WHR, WZR2, WZR, WER, and BBR series routers with firmware 1.x; BHR-4RV and FS-G54 routers with firmware 2.x; and AS-100 routers allow remote attackers to hijack the authentication of administrators for requests that modify settings, as demonstrated by changing the login password.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2011-05-09T19:00:00Z

Updated: 2024-09-17T03:22:31.307Z

Reserved: 2011-03-09T00:00:00Z

Link: CVE-2011-1324

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2011-05-09T19:55:03.507

Modified: 2011-05-27T04:00:00.000

Link: CVE-2011-1324

cve-icon Redhat

No data.