packetstormsecurity.com
http://packetstormsecurity.com/files/155557/Intelbras-Router-RF1200-1.1.3-Cross-Site-Request-Forgery.html CVE-2019-19516
MEDIUM
Intelbras Router WRN150 1.0.18 - Cross-Site Request Forgery
Record summary
CVE-2019-19516 has a selected CVSS score of 6.5 (medium); EIP currently links 2 catalogued exploits.
Description
Intelbras WRN 150 1.0.18 devices allow CSRF via GO=system_password.asp to the goform/SysToolChangePwd URI to change a password.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBIntelbras Router WRN150 1.0.18 - Cross-Site Request ForgeryExploitDB exploitby Prof. Joas AntonioNot analyzed1 file
ExploitDBIntelbras Router RF1200 1.1.3 - Cross-Site Request ForgeryExploitDB exploitby Prof. Joas AntonioNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-19516 exploit-db.com
https://www.exploit-db.com/exploits/47545