CVE-2013-3516

Description

NETGEAR WNR3500U and WNR3500L routers uses form tokens abased solely on routers current date and time, which allows attackers to guess the CSRF tokens.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.217

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2013-3516 are affected in wnr3500u_firmware 1.2.2.44_35.0.53naNCM
Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-3516)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234