First published: Sun Apr 21 2019(Updated: )
A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/user.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Intelbras Iwr 3000n Firmware | =1.5.0 | |
Intelbras IWR 3000N |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-11416.
The severity level of CVE-2019-11416 is critical with a score of 8.8.
The affected software version is Intelbras IWR 3000N firmware 1.5.0.
This vulnerability can be exploited through a CSRF attack on Intelbras IWR 3000N 1.5.0 devices, allowing complete control of the router.
You can find more information about CVE-2019-11416 at the following references: [Link 1](http://packetstormsecurity.com/files/152682/Intelbras-IWR-3000N-1.5.0-Cross-Site-Request-Forgery.html), [Link 2](https://1.337.zone/2019/04/08/intelbras-iwr-3000n-1-5-0-csrf-lead-to-router-takeover/), [Link 3](https://www.exploit-db.com/exploits/46770/).