CSRF Vulnerability in NETGEAR Custom Firmware by Voo
CVE-2019-13395
8.8HIGH
What is CVE-2019-13395?
The Voo-branded NETGEAR CG3700b custom firmware version 2.02.03 is susceptible to Cross-Site Request Forgery (CSRF), allowing attackers to craft malicious requests that can change router configurations. This includes the ability to modify crucial settings like WEP/WPA/WPA2 keys, revert the device to factory settings, or even upload harmful configuration files, significantly compromising network security.