Security Advisory

CVE-2019-13395

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-13 17:24:30
Last updated 2024-08-04 23:49:25
Assigner mitre
State PUBLISHED

Description

The Voo branded NETGEAR CG3700b custom firmware V2.02.03 allows CSRF against all /goform/ URIs. An attacker can modify all settings including WEP/WPA/WPA2 keys, restore the router to factory settings, or even upload an entire malicious configuration file.