CVE Database
/

CVE-2007-4822

Back to search

CVE-2007-4822

Published: Sep 11, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site request forgery (CSRF) vulnerability in the device management interface in Buffalo AirStation WHR-G54S 1.20 allows remote attackers to make configuration changes as an administrator via HTTP requests to certain HTML pages in the res parameter with an inp req parameter to cgi-bin/cgi, as demonstrated by accessing (1) ap.html and (2) filter_ip.html.

VendorProductVersions

n/a

n/a

affected
n/a

References

37665
vdb-entry
x_refsource_OSVDB
26712
third-party-advisory
x_refsource_SECUNIA
25588
vdb-entry
x_refsource_BID
3117
third-party-advisory
x_refsource_SREASON

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now