Back to search
CVE-2017-15653
Published: Jan 31, 2018
Modified: Aug 5, 2024
PUBLISHED
Description
Improper administrator IP validation after his login in the HTTPd server in all current versions (<= 3.0.0.4.380.7743) of Asus asuswrt allows an unauthorized user to execute any action knowing administrator session token by using a specific User-Agent string.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20180116 Multiple vulnerabilities in all versions of ASUS routers
mailing-list
x_refsource_FULLDISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now