ZeroHour

CVE-2017-16886

PoC
CVSS 3.0
8.8 high
EPSS
7%p94
Published
()
Modified
Description

The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact with the portal. Unauthorized Access to Web Services via CSRF can result in an unauthorized change of username or password of the administrator of the portal.

Vendors
fiberhome
Products
lm53q1 firmware
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.