CSRF vulnerabilities in the /cgi-bin/ directory of the WAVLINK WN530H4 M30H4.V5030.190403 allow an attacker to remotely access router endpoints, because these endpoints do not contain CSRF tokens. If a user is authenticated in the router portal, then this attack will work.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-4438 CSRF vulnerabilities in the /cgi-bin/ directory of the WAVLINK WN530H4 M30H4.V5030.190403 allow an attacker to remotely access router endpoints, because these endpoints do not contain CSRF tokens. If a user is authenticated in the router portal, then this attack will work.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T11:48:58.391Z

Reserved: 2020-04-23T00:00:00

Link: CVE-2020-12123

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-10-02T09:15:13.040

Modified: 2024-11-21T04:59:17.677

Link: CVE-2020-12123

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.