CVE-2007-4389
Published Aug 17, 2007
Last updated 6 years ago
Overview
- Description
- Cross-site request forgery (CSRF) vulnerability in /xslt in 2wire 1701HG, 1800HW, and 2071 Gateway routers, with 3.17.5, 3.7.1, and 5.29.51 software, allows remote attackers to create DNS mappings as administrators, and conduct DNS poisoning attacks, via the NAME and ADDR parameters.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 7.8
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:2wire:1701hg_router:3.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E7B858E7-6AFB-4D24-8A4E-794BE4B351AB" }, { "criteria": "cpe:2.3:h:2wire:1701hg_router:3.17.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "884F1148-AC2B-402B-8519-60BB39D2562B" }, { "criteria": "cpe:2.3:h:2wire:1701hg_router:5.29.51:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38F8B3DD-2F9D-4D76-AEFF-F3CA1F896163" }, { "criteria": "cpe:2.3:h:2wire:1800hw_router:3.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA7AF0F9-8143-49BA-82F0-6D01723F3510" }, { "criteria": "cpe:2.3:h:2wire:1800hw_router:3.17.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "528687D9-70AD-4815-A711-93FDC7E724E0" }, { "criteria": "cpe:2.3:h:2wire:1800hw_router:5.29.51:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42AF0715-98A0-46B3-8588-56B8E182A6B9" }, { "criteria": "cpe:2.3:h:2wire:2071_router:3.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "014A1046-8EAC-4856-8556-9442CF463A1E" }, { "criteria": "cpe:2.3:h:2wire:2071_router:3.17.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3C3F76B-04CF-4F3E-AF94-A1709E8BC8FD" }, { "criteria": "cpe:2.3:h:2wire:2071_router:5.29.51:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD57A887-A1F0-471C-A905-77BDDA8190DB" } ], "operator": "OR" } ] } ]