vendor:
EPC3925
by:
Jeroen - IT Nerdbox
8.8
CVSS
HIGH
Cross Site Request Forgery
352
CWE
Product Name: EPC3925
Affected Version From: epc3925-E10-5-v302r125572-130520c
Affected Version To: epc3925-E10-5-v302r125572-130520c
Patch Exists: NO
Related CWE: N/A
CPE: h:cisco:epc3925
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Cisco EPC3925
2013
Cisco EPC3925 ? Cross Site Request Forgery
This proof of concept demonstrates that the admin password can be changed by an attacker in a CSRF attack. However, it seems like any setting in the device can be manipulated using an attack like this. The device does not ask for the current password.
Mitigation:
Implementing proper authentication and authorization mechanisms, and using CSRF tokens to prevent CSRF attacks.