cbcvebase.
CVE-2018-17023
published 2018-09-13

CVE-2018-17023: Cross-site request forgery (CSRF) vulnerability on ASUS GT-AC5300 routers with firmware through 3.0.0.4.384_32738 allows remote attackers to hijack the…

high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
Cross-site request forgery (CSRF) vulnerability on ASUS GT-AC5300 routers with firmware through 3.0.0.4.384_32738 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a request to start_apply.htm.

Affected

1 ranges
VendorProductVersion rangeFixed in
asusgt-ac5300_firmware<= 3.0.0.4.384_32738