CVE-2013-2752

NETGEAR ReadyNAS <4.1.12, <4.2.x - CSRF

Title source: llm
STIX 2.1

Description

Cross-site request forgery (CSRF) vulnerability in frontview/lib/np_handler.pl in NETGEAR ReadyNAS RAIDiator before 4.1.12 and 4.2.x before 4.2.24 allows remote attackers to hijack the authentication of users.

References (4)

Core 4
Core References
Patch, Vendor Advisory x_refsource_misc
http://www.readynas.com/?p=7002
Broken Link vdb-entry x_refsource_osvdb
http://www.osvdb.org/98825

Scores

EPSS 0.0018
EPSS Percentile 38.9%

Details

CWE
CWE-352
Status published
Products (1)
netgear/raidiator 4.1 - 4.1.12
Published Dec 12, 2013
Tracked Since Feb 18, 2026