CVE-2019-19517: CSRF
Published May 5, 2020
·Updated
Intelbras RF1200 1.1.3 devices allow CSRF to bypass the login.html form, as demonstrated by launching a scrapy process.
Affected Software
2 affected components
Intelbras Action Rf 1200 Firmware=1.1.3
Intelbras Action RF 1200
Event History
May 5, 2020
CVE Published
via MITRE·05:03 PM
Data Sourced
via MITRE·05:03 PM
Description
Frequently Asked Questions
1
What is CVE-2019-19517?
CVE-2019-19517 is a vulnerability that allows CSRF to bypass the login.html form in Intelbras RF1200 1.1.3 devices.
2
What is the severity of CVE-2019-19517?
CVE-2019-19517 has a severity of 8.8 (high).
3
How does CVE-2019-19517 work?
CVE-2019-19517 allows an attacker to launch a scrapy process by bypassing the login.html form in Intelbras RF1200 1.1.3 devices.
4
Which software versions are affected by CVE-2019-19517?
CVE-2019-19517 affects Intelbras RF1200 1.1.3 firmware.
5
How can I fix CVE-2019-19517?
To fix CVE-2019-19517, it is recommended to update the Intelbras RF1200 firmware to a version that is not vulnerable.