Source |
CVE Liste |
Identifiant |
8309659 |
Date de publication |
2023-02-13 14:15:10 (vue: 2023-02-13 16:12:01) |
Titre |
CVE-2022-45724 |
Texte |
Incorrect Access Control in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to perform any HTTP request to an unauthenticated page to force the server to generate a SESSION_ID, and using this SESSION_ID an attacker can then perform authenticated requests. |
Notes |
|
Envoyé |
Oui |
Condensat |
2022 45724 access allows any attacker authenticated can comfast control cve force generate http incorrect network page perform remote request requests router same server session then unauthenticated using wr6110n |
Tags |
|
Stories |
|
Move |
|