CVE-2018-17023
published 2018-09-13CVE-2018-17023: Cross-site request forgery (CSRF) vulnerability on ASUS GT-AC5300 routers with firmware through 3.0.0.4.384_32738 allows remote attackers to hijack the…
high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
Cross-site request forgery (CSRF) vulnerability on ASUS GT-AC5300 routers with firmware through 3.0.0.4.384_32738 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a request to start_apply.htm.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| asus | gt-ac5300_firmware | <= 3.0.0.4.384_32738 | — |