CVE-2023-1205: CSRF
Published Mar 10, 2023
·Updated
NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 is vulnerable to cross-site request forgery attacks on all endpoints due to improperly implemented CSRF protections.
Affected Software
4 affected components
All of the following
Netgear RAX30 firmware<1.0.10.94
Netgear RAX30
Netgear RAX30 firmware<1.0.10.94
Netgear RAX30
Event History
Mar 10, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this NETGEAR Nighthawk WiFi6 Router vulnerability?
The vulnerability ID for this NETGEAR Nighthawk WiFi6 Router vulnerability is CVE-2023-1205.
2
What is the severity of CVE-2023-1205?
The severity of CVE-2023-1205 is high with a CVSS score of 8.8.
3
What is the affected software for CVE-2023-1205?
The affected software for CVE-2023-1205 is NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94.
4
What type of vulnerability is CVE-2023-1205?
CVE-2023-1205 is a cross-site request forgery (CSRF) vulnerability.
5
How can I mitigate the vulnerability in NETGEAR Nighthawk WiFi6 Router?
To mitigate the vulnerability in NETGEAR Nighthawk WiFi6 Router, update the firmware to version V1.0.10.94 or later.