CVE-2013-0717: CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device.
Affected Software
Event History
Frequently Asked Questions
What are the CVSS severity ratings of CVE-2013-0717?
CVE-2013-0717 is classified with a medium severity rating due to the potential for unauthorized access.
How can I mitigate the risks associated with CVE-2013-0717?
To mitigate CVE-2013-0717, users should implement CSRF protections within their application and ensure that all administrative sessions are secured.
What devices are affected by CVE-2013-0717?
CVE-2013-0717 affects multiple models of NEC Aterm routers including the WR9500N, WR8600N, WR8370N, WR8160N, WM3600R, and WM3450RN.
Has a patch been released for CVE-2013-0717?
Yes, NEC released updates to address the vulnerabilities identified in CVE-2013-0717.
What type of vulnerability is CVE-2013-0717?
CVE-2013-0717 is classified as a cross-site request forgery (CSRF) vulnerability.