CVE-2021-20621: CSRF
Cross-site request forgery (CSRF) vulnerability in Aterm WG2600HP firmware Ver1.0.2 and earlier, and Aterm WG2600HP2 firmware Ver1.0.2 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-20621?
CVE-2021-20621 is classified as a high severity vulnerability due to its potential for remote exploitation via CSRF.
How do I fix CVE-2021-20621?
To fix CVE-2021-20621, you should update the Aterm WG2600HP or WG2600HP2 firmware to a version later than 1.0.2.
What types of attacks can exploit CVE-2021-20621?
CVE-2021-20621 can be exploited through cross-site request forgery attacks, allowing unauthorized actions to be performed by an authenticated user.
Which firmware versions are affected by CVE-2021-20621?
Firmware versions 1.0.2 and earlier of both Aterm WG2600HP and WG2600HP2 are affected by CVE-2021-20621.
Who is at risk of CVE-2021-20621?
Administrators of NEC Aterm WG2600HP and WG2600HP2 devices are at risk of CVE-2021-20621 if they are using the vulnerable firmware versions.