Description
An issue was discovered on DODOCOOL DC38 3-in-1 N300 Mini Wireless Range Extend RTN2-AW.GD.R3465.1.20161103 devices. A Cross-site request forgery (CSRF) vulnerability allows remote attackers to hijack the authentication of users for requests that modify all the settings. This vulnerability can lead to changing an existing user's username and password, changing the Wi-Fi password, etc.
Published: 2018-01-29
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-17489 An issue was discovered on DODOCOOL DC38 3-in-1 N300 Mini Wireless Range Extend RTN2-AW.GD.R3465.1.20161103 devices. A Cross-site request forgery (CSRF) vulnerability allows remote attackers to hijack the authentication of users for requests that modify all the settings. This vulnerability can lead to changing an existing user's username and password, changing the Wi-Fi password, etc.
References
History

No history.

Subscriptions

Dodocool Dc38 Dc38 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T05:40:51.201Z

Reserved: 2018-01-16T00:00:00.000Z

Link: CVE-2018-5720

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-01-29T05:29:00.340

Modified: 2024-11-21T04:09:14.603

Link: CVE-2018-5720

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses