First published: Tue Apr 05 2016(Updated: )
Cross-site request forgery (CSRF) vulnerability in AQUOS Photo Player HN-PP150 1.02.00.04 through 1.03.01.04 allows remote attackers to hijack the authentication of arbitrary users.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Sharp Aquos Hn-pp150 Firmware | ||
Sharp Aquos Hn-pp150 Firmware | =1.02.00.04 | |
Sharp Aquos Hn-pp150 Firmware | =1.03.01.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1175 has a medium severity rating due to the potential for remote attackers to exploit the CSRF vulnerability.
To fix CVE-2016-1175, update the AQUOS Photo Player firmware to version 1.03.01.04 or later.
CVE-2016-1175 affects Sharp AQUOS HN-PP150 firmware versions 1.02.00.04 and 1.03.01.04.
CVE-2016-1175 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
Yes, attackers can exploit CVE-2016-1175 remotely to hijack user authentication.