A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/user.

Published : 2019-04-22 11:29 Updated : 2019-05-06 02:20

CVSS Score More info
Score 9.3 / 10
Vendor Product Version URI
Intelbras Iwr 3000n Firmware 1.5.0 cpe:/o:intelbras:iwr_3000n_firmware:1.5.0
  1. Intelbras (1) Search CVE
    1. Iwr 3000n Firmware (1) Search CVE
      1. 1.5.0


ID Name Description Links
CWE-352 Cross-Site Request Forgery (CSRF) The web application does not, or can not, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request. CVE