First published: Wed Nov 13 2019(Updated: )
NETGEAR WNR3500U and WNR3500L routers uses form tokens abased solely on router's current date and time, which allows attackers to guess the CSRF tokens.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
=1.2.2.44_35.0.53na | ||
Netgear Wnr3500l Firmware | =1.2.2.44_35.0.53na | |
Netgear Wnr3500l |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2013-3516.
CVE-2013-3516 has a severity value of 6.5, which is considered medium.
CVE-2013-3516 affects NETGEAR WNR3500U routers by allowing attackers to guess the CSRF tokens.
CVE-2013-3516 affects NETGEAR WNR3500L routers by allowing attackers to guess the CSRF tokens.
At the moment, there are no known fixes for CVE-2013-3516. It is recommended to follow the vendor's security advisories for any updates or patches.