CVE-2023-52235: CSRF
SpaceX Starlink Wi-Fi router GEN 2 before 2023.53.0 and Starlink Dish before 07dd2798-ff15-4722-a9ee-de28928aed34 allow CSRF (e.g., for a reboot) via a DNS Rebinding attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-52235?
CVE-2023-52235 has a high severity due to its potential to allow unauthorized actions like rebooting the device.
How do I fix CVE-2023-52235?
To fix CVE-2023-52235, users should update their SpaceX Starlink Wi-Fi router GEN 2 firmware to version 2023.53.0 or later.
What are the impacted devices by CVE-2023-52235?
CVE-2023-52235 affects the SpaceX Starlink Wi-Fi router GEN 2 prior to version 2023.53.0 and the Starlink Dish prior to version 07dd2798-ff15-4722-a9ee-de28928aed34.
What type of attack is associated with CVE-2023-52235?
CVE-2023-52235 is associated with a Cross-Site Request Forgery (CSRF) attack triggered via a DNS Rebinding vulnerability.
Is it safe to use older versions of SpaceX Starlink products with CVE-2023-52235?
It is not safe to use older versions of SpaceX Starlink products affected by CVE-2023-52235 as they are vulnerable to CSRF attacks.