A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of the LevelOne WBR-6012 R0.40e6. A specially crafted HTTP request can lead to unauthorized access. An attacker can stage a malicious web page to trigger this vulnerability.
References
Link | Resource |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2024-1981 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
08 Nov 2024, 19:00
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
References | () https://talosintelligence.com/vulnerability_reports/TALOS-2024-1981 - Exploit, Third Party Advisory | |
CPE | cpe:2.3:h:level1:wbr-6012:-:*:*:*:*:*:*:* cpe:2.3:o:level1:wbr-6012_firmware:r0.40e6:*:*:*:*:*:*:* |
|
First Time |
Level1
Level1 wbr-6012 Level1 wbr-6012 Firmware |
30 Oct 2024, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-30 14:15
Updated : 2024-11-08 19:00
NVD link : CVE-2024-24777
Mitre link : CVE-2024-24777
JSON object : View
Products Affected
level1
- wbr-6012_firmware
- wbr-6012
CWE
CWE-352
Cross-Site Request Forgery (CSRF)