ID

VAR-190001-0646


TITLE

NETGEAR Wireless Cable Modem Gateway Cross-Site Request Forgery Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2011-3763

DESCRIPTION

The NETGEAR Wireless Cable Modem Gateway is a wireless cable modem gateway. The NETGEAR Wireless Cable Modem Gateway has a cross-site request forgery vulnerability that allows remote attackers to perform administrator actions. Exploiting these issues could allow a remote attacker to perform certain administrative actions, bypass certain security restrictions, gain unauthorized access to the affected device, or delete certain data. Other attacks are also possible

Trust: 0.81

sources: CNVD: CNVD-2011-3763 // BID: 49692

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2011-3763

AFFECTED PRODUCTS

vendor:netgearmodel:wireless cable modem gateway cg814wg r14scope:eqversion:3.9.26

Trust: 0.9

vendor:netgearmodel:wireless cable modem gateway cg814wg r15scope:neversion:3.9.26

Trust: 0.3

sources: CNVD: CNVD-2011-3763 // BID: 49692

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201109-341

TYPE

cross-site request forgery

Trust: 0.6

sources: CNNVD: CNNVD-201109-341

EXTERNAL IDS

db:BIDid:49692

Trust: 1.5

db:CNVDid:CNVD-2011-3763

Trust: 0.6

db:CNNVDid:CNNVD-201109-341

Trust: 0.6

sources: CNVD: CNVD-2011-3763 // BID: 49692 // CNNVD: CNNVD-201109-341

REFERENCES

url:http://www.senseofsecurity.com.au/advisories/sos-11-011.pdf

Trust: 0.9

url:http://www.securityfocus.com/bid/49692

Trust: 0.6

url:http://www.netgear.com

Trust: 0.3

sources: CNVD: CNVD-2011-3763 // BID: 49692 // CNNVD: CNNVD-201109-341

CREDITS

Sense of Security Labs

Trust: 0.9

sources: BID: 49692 // CNNVD: CNNVD-201109-341

SOURCES

db:CNVDid:CNVD-2011-3763
db:BIDid:49692
db:CNNVDid:CNNVD-201109-341

LAST UPDATE DATE

2022-05-17T01:47:41.226000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2011-3763date:2011-09-21T00:00:00
db:BIDid:49692date:2011-09-20T00:00:00
db:CNNVDid:CNNVD-201109-341date:2011-09-22T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2011-3763date:2011-09-21T00:00:00
db:BIDid:49692date:2011-09-20T00:00:00
db:CNNVDid:CNNVD-201109-341date:1900-01-01T00:00:00