A specific router allows changing the Wi-Fi password remotely. Genexis Platinum 4410 V2-1.28, a compact router generally used at homes and offices was found to be vulnerable to Broken Access Control and CSRF which could be combined to remotely change the WIFI access point’s password.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-17715 A specific router allows changing the Wi-Fi password remotely. Genexis Platinum 4410 V2-1.28, a compact router generally used at homes and offices was found to be vulnerable to Broken Access Control and CSRF which could be combined to remotely change the WIFI access point’s password.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T15:26:09.700Z

Reserved: 2020-08-28T00:00:00

Link: CVE-2020-25015

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-09-16T18:15:13.390

Modified: 2024-11-21T05:16:31.130

Link: CVE-2020-25015

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.