ultiple cross-site request forgery (CSRF) vulnerabilities in Huawei HiLink E3276 and E3236 TCPU before V200R002B470D13SP00C00 and WebUI before V100R007B100D03SP01C03, E5180s-22 before 21.270.21.00.00, and E586Bs-2 before 21.322.10.00.889 allow remote attackers to hijack the authentication of users for requests that (1) modify configurations, (2) send SMS messages, or have other unspecified impact via unknown vectors.
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
21 Nov 2024, 02:11
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://www.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-360246.htm - Vendor Advisory | |
| References | () http://www.securityfocus.com/bid/69162 - | |
| References | () https://www.exploit-db.com/exploits/46092/ - |
Published : 2014-11-21 15:59
Updated : 2025-04-12 10:46
NVD link : CVE-2014-5395
Mitre link : CVE-2014-5395
CVE.ORG link : CVE-2014-5395
JSON object : View
Cross-Site Request Forgery (CSRF)