CVE-2018-15702: CSRF
Published Oct 1, 2018
·Updated
The web interface in TP-Link TL-WRN841N 0.9.1 4.16 v0348.0 is vulnerable to CSRF due to insufficient validation of the referer field.
Affected Software
2 affected components
TP-Link Tl-wrn841n Firmware=0.9.1_4.16_v0348.0
TP-Link TL-WRN841N
Event History
Oct 1, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-15702?
CVE-2018-15702 is classified as a medium severity vulnerability due to its potential for Cross-Site Request Forgery attacks.
2
How do I fix CVE-2018-15702?
To fix CVE-2018-15702, you should apply any available firmware updates from TP-Link that address this vulnerability.
3
What software versions are affected by CVE-2018-15702?
CVE-2018-15702 affects TP-Link TL-WRN841N running firmware version 0.9.1_4.16_v0348.0.
4
Can CVE-2018-15702 lead to unauthorized access?
Yes, CVE-2018-15702 can allow attackers to perform unauthorized actions through CSRF if exploited.
5
What type of attack does CVE-2018-15702 enable?
CVE-2018-15702 enables Cross-Site Request Forgery (CSRF) attacks due to insufficient validation.