CSRF tokens are not used in the web application of Moxa OnCell G3100-HSPA Series version 1.4 Build 16062919 and prior, which makes it possible to perform CSRF attacks on the device administrator.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-3458 CSRF tokens are not used in the web application of Moxa OnCell G3100-HSPA Series version 1.4 Build 16062919 and prior, which makes it possible to perform CSRF attacks on the device administrator.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T08:10:14.139Z

Reserved: 2018-05-24T00:00:00

Link: CVE-2018-11427

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-07-03T15:15:10.633

Modified: 2024-11-21T03:43:20.840

Link: CVE-2018-11427

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.