PoC Index

CVE-2013-5730

MEDIUM 6.8EPSS 1.2%

Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DSL-2740B Gateway with firmware EU_1.00 allow remote attackers to hijack the authentication of administrators for requests that (1) enable or disable Wireless MAC Address Filters via a wlFltMode action to wlmacflt.cmd, (2) enable or disable firewall protections via a request to scdmz.cmd, or (3) enable or disable remote management via a save action to scsrvcntr.cmd.

CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
1.21% chance of exploitation in the next 30 days, 66th percentile
Published
2013-11-19
Updated
2024-08-06

ExploitDB entries (1)

References

Related