CVE-2023-22375: CSRF

Published Feb 14, 2023
·
Updated

UNSUPPORTED WHEN ASSIGNED Cross-site request forgery (CSRF) vulnerability in Wired/Wireless LAN Pan/Tilt Network Camera CS-WMV02G all versions allows a remote unauthenticated attacker to hijack the authentication and conduct arbitrary operations by having a logged-in user to view a malicious page. NOTE: This vulnerability only affects products that are no longer supported by the developer.

Affected Software

4 affected components
PLANEX Cs-wmv02g Firmware
PLANEX Cs-wmv02g
All of the following
PLANEX Cs-wmv02g Firmware
PLANEX Cs-wmv02g

Event History

Feb 14, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness

Frequently Asked Questions

1

What is the severity of CVE-2023-22375?

CVE-2023-22375 is classified as a cross-site request forgery (CSRF) vulnerability that allows remote unauthenticated attackers to hijack user authentication.

2

How do I fix CVE-2023-22375?

To mitigate CVE-2023-22375, users should ensure software is updated to the latest firmware version that addresses the CSRF vulnerability.

3

What versions of the Planex CS-WMV02G are affected by CVE-2023-22375?

All versions of the Planex CS-WMV02G firmware are affected by CVE-2023-22375.

4

Can CVE-2023-22375 allow an attacker to execute arbitrary operations?

Yes, CVE-2023-22375 allows attackers to execute arbitrary operations by hijacking an authenticated user's session.

5

Is CVE-2023-22375 a supported vulnerability issue?

CVE-2023-22375 is marked as unsupported when assigned, meaning official support for a fix may not be available.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203