CVE-2009-1561
N/A
N/A
Summary
Cross-site request forgery (CSRF) vulnerability in administration.cgi on the Cisco Linksys WRT54GC router with firmware 1.05.7 allows remote attackers to hijack the intranet connectivity of arbitrary users for requests that change the administrator password via the sysPasswd and sysConfirmPasswd parameters.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://archives.neohapsis.com/archives/bugtraq/2009-04/0198.html
- http://packetstormsecurity.org/0904-exploits/linksysadmin-passwd.txt
- http://www.vupen.com/english/advisories/2009/1172
- http://www.falandodeseguranca.com/?p=17
- http://www.securityfocus.com/bid/34616
- http://secunia.com/advisories/34805
References
- http://archives.neohapsis.com/archives/bugtraq/2009-04/0198.html
- http://packetstormsecurity.org/0904-exploits/linksysadmin-passwd.txt
- http://www.vupen.com/english/advisories/2009/1172
- http://www.falandodeseguranca.com/?p=17
- http://www.securityfocus.com/bid/34616
- http://secunia.com/advisories/34805
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.