vendor:
iSpot / ClearSpot 4G
by:
Matthew Jakubowski
8,8
CVSS
HIGH
Cross-Site Request Forgery (CSRF)
352
CWE
Product Name: iSpot / ClearSpot 4G
Affected Version From: 2.0.0.0 [R1679 (Jul 6 2010 17:57:37)]
Affected Version To: 2.0.0.0 [R1786 (Aug 4 2010 20:09:06)]
Patch Exists: YES
Related CWE: CVE-2010-4507
CPE: h:clear:ispot
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2010
Trustwave’s SpiderLabs Security Advisory TWSL2010-008: Clear iSpot/Clearspot CSRF Vulnerabilities
These devices are susceptible to Cross-Site Request Forgery (CSRF). An attacker that is able to coerce a ClearSpot / iSpot user into following a link can arbitrarily execute system commands on the device. The following examples will allow an attacker to enable remote access to the iSpot and ClearSpot 4G, and add their own account to the device. This level of access also provides a device's client-side SSL certificates, which are used to perform device authentication. This could lead to a compromise of ClearWire accounts as well as other personal information.
Mitigation:
The vendor has released a firmware update to address this issue.