The Paradox IP150 Internet Module in version 1.40.00 is vulnerable to Cross-Site Request Forgery (CSRF) attacks due to a lack of countermeasures and the use of the HTTP method `GET` to introduce changes in the system.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sba-research

Published: 2024-06-19T09:47:38.961Z

Updated: 2024-08-01T21:18:06.885Z

Reserved: 2024-06-06T10:51:57.573Z

Link: CVE-2024-5676

cve-icon Vulnrichment

Updated: 2024-06-25T17:16:20.533Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-19T10:15:10.740

Modified: 2024-06-24T05:15:09.600

Link: CVE-2024-5676

cve-icon Redhat

No data.