First published: Wed May 10 2017(Updated: )
ASUS RT-AC* and RT-N* devices with firmware before 3.0.0.4.380.7378 have Login Page CSRF and Save Settings CSRF.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ASUS RT-AC1750 B1 Firmware | =3.0.0.4.380.7266 | |
ASUS RT-AC1750 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-5891 is classified as a medium severity vulnerability due to its potential for unauthorized access to router configuration.
To fix CVE-2017-5891, upgrade your ASUS RT-AC* and RT-N* devices firmware to version 3.0.0.4.380.7378 or later.
CVE-2017-5891 allows attackers to exploit Cross-Site Request Forgery (CSRF) vulnerabilities to change router settings without user consent.
CVE-2017-5891 affects ASUS RT-AC and RT-N series devices that are running firmware versions prior to 3.0.0.4.380.7378.
If CVE-2017-5891 is not addressed, it may lead to unauthorized configuration changes or access to the network.