CVE-2016-1175: CSRF
Published Apr 5, 2016
·Updated
Cross-site request forgery (CSRF) vulnerability in AQUOS Photo Player HN-PP150 1.02.00.04 through 1.03.01.04 allows remote attackers to hijack the authentication of arbitrary users.
Affected Software
3 affected components
SHARP Aquos Hn-pp150
SHARP Aquos Hn-pp150 Firmware=1.02.00.04
SHARP Aquos Hn-pp150 Firmware=1.03.01.04
Event History
Apr 5, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1175?
CVE-2016-1175 has a medium severity rating due to the potential for remote attackers to exploit the CSRF vulnerability.
2
How do I fix CVE-2016-1175?
To fix CVE-2016-1175, update the AQUOS Photo Player firmware to version 1.03.01.04 or later.
3
What systems are affected by CVE-2016-1175?
CVE-2016-1175 affects Sharp AQUOS HN-PP150 firmware versions 1.02.00.04 and 1.03.01.04.
4
What type of vulnerability is CVE-2016-1175?
CVE-2016-1175 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Can CVE-2016-1175 be exploited remotely?
Yes, attackers can exploit CVE-2016-1175 remotely to hijack user authentication.