CVE-2015-5990: CSRF
Published Dec 31, 2015
·Updated
Cross-site request forgery (CSRF) vulnerability on Belkin F9K1102 2 devices with firmware 2.10.17 allows remote attackers to hijack the authentication of arbitrary users.
Affected Software
2 affected components
Zyxel GS1900-10HP firmware<2.50\(aazi.0\)c0
Zyxel GS1900-10HP firmware<2.50\(aazi.0\)c0
Event History
Dec 31, 2015
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5990?
CVE-2015-5990 is considered a medium severity vulnerability due to its potential for cross-site request forgery leading to authentication hijacking.
2
How do I fix CVE-2015-5990?
To fix CVE-2015-5990, update the Belkin F9K1102 devices to the latest firmware version that addresses this vulnerability.
3
What devices are affected by CVE-2015-5990?
CVE-2015-5990 affects Belkin F9K1102 devices running firmware version 2.10.17.
4
What type of attack is associated with CVE-2015-5990?
CVE-2015-5990 is associated with cross-site request forgery (CSRF) attacks.
5
Can CVE-2015-5990 allow remote attackers to hijack user sessions?
Yes, CVE-2015-5990 allows remote attackers to hijack the authentication of arbitrary users.