Unauthorized Access Vulnerability in FiberHome Mobile WIFI Device
CVE-2017-16886
8.8HIGH
What is CVE-2017-16886?
The FiberHome Mobile WIFI Device Model LM53Q1 uses SOAP-based web services for portal interaction, which makes it vulnerable to unauthorized access through CSRF attacks. This vulnerability could permit attackers to manipulate the administrator's credentials, potentially leading to unauthorized control of the device. Proper validation mechanisms need to be implemented to safeguard against such exploitation, ensuring that access to sensitive functions is appropriately secured.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved