Cross-Site Request Forgery Vulnerability in Dynacolor FCM-MB40 Devices
CVE-2019-13401
8.8HIGH
What is CVE-2019-13401?
Dynacolor FCM-MB40 devices, particularly version 1.2.0.0, are susceptible to Cross-Site Request Forgery (CSRF) vulnerabilities. This flaw exists in all scripts located under the cgi-bin directory, which could allow attackers to execute unauthorized commands on behalf of users. Proper measures should be taken to secure these devices and mitigate the risks associated with potential CSRF attacks.