Cross-Site Request Forgery Vulnerability in NetComm Wireless G LTE Router
CVE-2018-14783

8.8HIGH

What is CVE-2018-14783?

The NetComm Wireless G LTE Light Industrial M2M Router suffers from a cross-site request forgery vulnerability. This issue allows an attacker to initiate changes to the device's configuration, such as altering passwords, without proper authentication. Users of firmware versions earlier than 2.0.29.11 are particularly at risk, as this vulnerability can lead to unauthorized access and control over the device.

Affected Version(s)

NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 2.0.29.11 and prior. NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 2.0.29.11 and prior.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.