ID

VAR-200909-0579


TITLE

Linksys WRT54GC Router HTTP Request Cross-Site Request Forgery Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2009-5226

DESCRIPTION

Linksys WRT54GC is a small wireless router from Cisco.  The diagnostics.cgi script of the WRT54GC router does not properly verify the HTTP request submitted by the user. A remote attacker can inject arbitrary script code or cause a denial of service by including malicious ping_address and raceroute_address parameters in the request.

Trust: 0.6

sources: CNVD: CNVD-2009-5226

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2009-5226

AFFECTED PRODUCTS

vendor:nonemodel: - scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2009-5226

EXTERNAL IDS

db:CNVDid:CNVD-2009-5226

Trust: 0.6

sources: CNVD: CNVD-2009-5226

SOURCES

db:CNVDid:CNVD-2009-5226

LAST UPDATE DATE

2022-05-04T09:30:56.032000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2009-5226date:2009-09-30T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2009-5226date:2009-09-30T00:00:00