Home
MEDIUM: 4.3 CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:NMEDIUM: 5.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N v1.1.10 and earlier
affected
v1.1.3 and earlier
affected
v1.1.3 and earlier
affected
v1.1.3 and earlier
affected
Description
ELECOM wireless LAN access point devices implement CSRF protection mechanism, but with inadequate handling of CSRF tokens. If a user views a malicious page while logged in, the user may be tricked to do unintended operations.
Problem types
Use of Invariant Value in Dynamically Changing Context
Product status
References
www.elecom.co.jp/news/security/20260512-01/