CVE-2019-5986: CSRF
Cross-site request forgery (CSRF) vulnerability in Hikari Denwa router/Home GateWay (Hikari Denwa router/Home GateWay provided by NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION PR-S300NE/RT-S300NE/RV-S340NE firmware version Ver. 19.41 and earlier, PR-S300HI/RT-S300HI/RV-S340HI firmware version Ver.19.01.0005 and earlier, PR-S300SE/RT-S300SE/RV-S340SE firmware version Ver.19.40 and earlier, PR-400NE/RT-400NE/RV-440NE firmware version Ver.7.42 and earlier, PR-400KI/RT-400KI/RV-440KI firmware version Ver.07.00.1010 and earlier, PR-400MI/RT-400MI/RV-440MI firmware version Ver. 07.00.1012 and earlier, PR-500KI/RT-500KI firmware version Ver.01.00.0090 and earlier, RS-500KI firmware version Ver.01.00.0070 and earlier, PR-500MI/RT-500MI firmware version Ver.01.01.0014 and earlier, and RS-500MI firmware version Ver.03.01.0019 and earlier, and Hikari Denwa router/Home GateWay provided by NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION PR-S300NE/RT-S300NE/RV-S340NE firmware version Ver. 19.41 and earlier, PR-S300HI/RT-S300HI/RV-S340HI firmware version Ver.19.01.0005 and earlier, PR-S300SE/RT-S300SE/RV-S340SE firmware version Ver.19.40 and earlier, PR-400NE/RT-400NE/RV-440NE firmware version Ver.7.42 and earlier, PR-400KI/RT-400KI/RV-440KI firmware version Ver.07.00.1010 and earlier, PR-400MI/RT-400MI/RV-440MI firmware version Ver. 07.00.1012 and earlier, PR-500KI/RT-500KI firmware version Ver.01.00.0090 and earlier, and PR-500MI/RT-500MI firmware version Ver.01.01.0011 and earlier) allow remote attackers to hijack the authentication of administrators via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-5986?
CVE-2019-5986 is classified as a medium severity vulnerability due to its potential for exploitation through cross-site request forgery.
How do I fix CVE-2019-5986?
To mitigate CVE-2019-5986, users should upgrade their Hikari Denwa router/Home Gateway firmware to a version higher than 19.41 for affected models.
Which firmware versions are affected by CVE-2019-5986?
CVE-2019-5986 affects firmware versions up to and including 19.41 for several Hikari Denwa router/Home Gateway models.
What types of devices are impacted by CVE-2019-5986?
CVE-2019-5986 impacts specific models of Hikari Denwa routers/home gateways provided by both NTT East and NTT West.
Is CVE-2019-5986 a remote or local vulnerability?
CVE-2019-5986 is a remote vulnerability, allowing attackers to exploit it without needing physical access to the device.