CVE-2020-13259

HIGH

RAD SecFlow-1v os-image SF_0290_2.3.01.26 - CSRF

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2020-13259. PoCs published by Jonatan Schor, UrielYochpaz.

AI-analyzed exploit summary This exploit demonstrates a CSRF vulnerability in RAD SecFlow-1v's web interface, allowing unauthenticated attackers to perform actions like device reboot by tricking authenticated users into visiting a malicious link. It can be combined with CVE-2020-13260 for full account takeover.

Description

A vulnerability in the web-based management interface of RAD SecFlow-1v os-image SF_0290_2.3.01.26 could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web UI on an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to follow a malicious link. A successful exploit could allow the attacker to perform arbitrary actions with the privilege level of the affected user. This could be exploited in conjunction with CVE-2020-13260.

Exploits (2)

exploitdb WORKING POC
by Jonatan Schor · textwebappshardware
https://www.exploit-db.com/exploits/48809

This exploit demonstrates a CSRF vulnerability in RAD SecFlow-1v's web interface, allowing unauthenticated attackers to perform actions like device reboot by tricking authenticated users into visiting a malicious link. It can be combined with CVE-2020-13260 for full account takeover.

Classification
Working Poc 100%
Attack Type
Csrf
Complexity
Trivial
Reliability
Reliable
Target: RAD SecFlow-1v SF_0290_2.3.01.26
No auth needed
Prerequisites: Authenticated user session · User interaction (clicking a malicious link)
devstral-2 · analyzed Feb 16, 2026 Full analysis →
nomisec WORKING POC 3 stars
by UrielYochpaz · poc
https://github.com/UrielYochpaz/CVE-2020-13259

This PoC demonstrates a CSRF vulnerability in RAD SecFlow-1v's web interface, allowing unauthenticated attackers to perform actions with the privilege level of an authenticated user. The AttackerServer.py script captures the victim's cookie, which can be used for session hijacking.

Classification
Working Poc 90%
Attack Type
Auth Bypass
Complexity
Moderate
Reliability
Reliable
Target: RAD SecFlow-1v
No auth needed
Prerequisites: Victim must be authenticated and persuaded to visit a malicious link
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit, Third Party Advisory x_refsource_misc
https://cxsecurity.com/issue/WLB-2020090064
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/48809

Scores

CVSS v3 8.8
EPSS 0.0466
EPSS Percentile 90.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-352
Status published
Products (1)
rad/secflow-1v_firmware os-image_sf_0290_2.3.01.26
Published Sep 16, 2020
Tracked Since Feb 18, 2026