ID

VAR-E-201309-0307


TITLE

ONO Hitron CDE-30364 Multiple Cross Site Request Forgery Vulnerabilities

Trust: 0.3

sources: BID: 62420

DESCRIPTION

ONO Hitron CDE-30364 is prone to multiple cross-site request-forgery vulnerabilities.
Attackers can exploit these issues to perform certain administrative actions and gain unauthorized access to the affected device.

Trust: 0.3

sources: BID: 62420

AFFECTED PRODUCTS

vendor:onomodel:hitron cde-30364scope:eqversion:0

Trust: 0.3

sources: BID: 62420

EXPLOIT

To exploit these issues an attacker must entice a user into visiting a malicious site.
The following exploits are available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/62420.html.txt">/data/vulnerabilities/exploits/62420.html.txt</a></li>

Trust: 0.3

sources: BID: 62420

PRICE

Free

Trust: 0.3

sources: BID: 62420

TYPE

Design Error

Trust: 0.3

sources: BID: 62420

CREDITS

Matias Mingorance Svensson

Trust: 0.3

sources: BID: 62420

EXTERNAL IDS

db:BIDid:62420

Trust: 0.3

sources: BID: 62420

REFERENCES

url:http://www.ono.es/clientes/te-ayudamos/dudas/internet/equipos/hitron/hitron-cde-30364/

Trust: 0.3

sources: BID: 62420

SOURCES

db:BIDid:62420

LAST UPDATE DATE

2022-07-27T09:15:42.446000+00:00


SOURCES UPDATE DATE

db:BIDid:62420date:2013-09-14T00:00:00

SOURCES RELEASE DATE

db:BIDid:62420date:2013-09-14T00:00:00