CVE-2020-23589
MEDIUMOPTILINK OP-XT71000N V2.2 Firmware OP_V3.3.1-191028 - Unauthenticated Denial of Service via CSRF to Reboot Endpoint
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-23589. PoCs published by huzaifahussain98.
AI-analyzed exploit summary This repository describes a CSRF vulnerability in OPTILINK OP-XT71000N routers (Firmware OP_V3.3.1-191028) that allows unauthenticated remote attackers to reboot the device via a request to /mgm_dev_reboot.asp, leading to a Denial of Service (DoS).
Description
A vulnerability in OPTILINK OP-XT71000N Hardware Version: V2.2 , Firmware Version: OP_V3.3.1-191028 allows an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack to cause a Denial of Service by Rebooting the router through " /mgm_dev_reboot.asp."
Exploits (1)
This repository describes a CSRF vulnerability in OPTILINK OP-XT71000N routers (Firmware OP_V3.3.1-191028) that allows unauthenticated remote attackers to reboot the device via a request to /mgm_dev_reboot.asp, leading to a Denial of Service (DoS).
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H