CVE-2018-12456
Last modified
CVE-2018-12456 is a vulnerability of currently unknown severity. Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actions such as changing the wireless SSID, rebooting the device, editing access control lists, or activating remote access.. EPSS estimates a 0.89% chance of exploitation in the next 30 days.
Description
Intelbras NPLUG 1.0.0.14 wireless repeater devices have no CSRF token protection in the web interface, allowing attackers to perform actions such as changing the wireless SSID, rebooting the device, editing access control lists, or activating remote access.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intelbras | Nplug Firmware | 1.0.0.14 |
References
- http://seclists.org/fulldisclosure/2018/Oct/18Exploit, Mailing List, Third Party Advisory
- http://seclists.org/fulldisclosure/2018/Oct/18Exploit, Mailing List, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-12456?
How severe is CVE-2018-12456?
How do I fix CVE-2018-12456?
Are you affected by CVE-2018-12456?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
