CVE-2013-2752: CSRF
Cross-site request forgery (CSRF) vulnerability in frontview/lib/nphandler.pl in NETGEAR ReadyNAS RAIDiator before 4.1.12 and 4.2.x before 4.2.24 allows remote attackers to hijack the authentication of users.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2752?
CVE-2013-2752 has been classified as a high severity vulnerability due to its potential for cross-site request forgery attacks.
How do I fix CVE-2013-2752?
To fix CVE-2013-2752, upgrade your NETGEAR ReadyNAS RAIDiator to version 4.1.12 or 4.2.24 or later.
What causes the vulnerability CVE-2013-2752?
CVE-2013-2752 is caused by a cross-site request forgery (CSRF) vulnerability in the np_handler.pl script of NETGEAR ReadyNAS RAIDiator.
What are the impacts of CVE-2013-2752?
The impacts of CVE-2013-2752 include unauthorized actions being performed on behalf of authenticated users.
Which versions of NETGEAR ReadyNAS are affected by CVE-2013-2752?
CVE-2013-2752 affects NETGEAR ReadyNAS RAIDiator versions prior to 4.1.12 and 4.2.x versions before 4.2.24.