ZeroHour

CVE-2016-6158

CVSS 3.0
6.1 medium
EPSS
1%p67
Published
()
Modified
Description

Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei WS331a routers with software before WS331a-10 V100R001C01B112 allow remote attackers to hijack the authentication of administrators for requests that (1) restore factory settings or (2) reboot the device via unspecified vectors.

Vendors
huawei
Products
ws331a router firmware
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.