CVE-2013-3516: CSRF
Published Nov 13, 2019
·Updated
NETGEAR WNR3500U and WNR3500L routers uses form tokens abased solely on router's current date and time, which allows attackers to guess the CSRF tokens.
Affected Software
4 affected components
Netgear Wnr3500u Firmware=1.2.2.44_35.0.53na
Netgear WNR3500U
Netgear Wnr3500l Firmware=1.2.2.44_35.0.53na
Netgear WNR3500L
Event History
Nov 13, 2019
CVE Published
via MITRE·07:30 PM
Data Sourced
via MITRE·07:30 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2013-3516.
2
What is the severity of CVE-2013-3516?
CVE-2013-3516 has a severity value of 6.5, which is considered medium.
3
How does CVE-2013-3516 affect NETGEAR WNR3500U routers?
CVE-2013-3516 affects NETGEAR WNR3500U routers by allowing attackers to guess the CSRF tokens.
4
How does CVE-2013-3516 affect NETGEAR WNR3500L routers?
CVE-2013-3516 affects NETGEAR WNR3500L routers by allowing attackers to guess the CSRF tokens.
5
Are there any known fixes for CVE-2013-3516?
At the moment, there are no known fixes for CVE-2013-3516. It is recommended to follow the vendor's security advisories for any updates or patches.