Belkin F9K1102 2 devices with firmware 2.10.17 rely on client-side JavaScript code for authorization, which allows remote attackers to obtain administrative privileges via certain changes to LockStatus and Login_Success values.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published: 2015-12-31T16:00:00

Updated: 2024-08-06T07:06:35.103Z

Reserved: 2015-08-14T00:00:00

Link: CVE-2015-5989

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2015-12-31T16:59:03.250

Modified: 2015-12-31T20:00:56.883

Link: CVE-2015-5989

cve-icon Redhat

No data.