Cross-Site Request Forgery Vulnerability in Tenda AC1206 Router
CVE-2022-42077

6.5MEDIUM

Key Information:

Vendor
Tenda
Vendor
CVE Published:
12 October 2022

Summary

The Tenda AC1206 router, specifically the version US_AC1206V1.0RTL_V15.03.06.23_multi_TD01, is exposed to a Cross Site Request Forgery (CSRF) vulnerability. This flaw allows attackers to exploit the router's functionality, potentially leading to unauthorized changes or disclosure of sensitive information. Users should be aware of the risks associated with this vulnerability and take appropriate measures to secure their devices.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.