LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page. Attackers can cause victim users to perform arbitrary operations via interaction with crafted elements on the web page.
CVSS
No CVSS.
References
Configurations
Configuration 1 (hide)
AND |
|
History
30 May 2025, 14:12
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/ShravanSinghRathore/Security-Advisory-Multiple-Vulnerabilities-in-LB-link-BL-W1210M-Router/wiki/Clickjacking-%28CVE%E2%80%902024%E2%80%9033377%29 - Broken Link | |
References | () https://redfoxsec.com/blog/security-advisory-multiple-vulnerabilities-in-lb-link-bl-w1210m-router/ - Exploit, Third Party Advisory | |
CPE | cpe:2.3:o:lb-link:bl-w1210m_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:lb-link:bl-w1210m:2.0:*:*:*:*:*:*:* |
|
First Time |
Lb-link bl-w1210m
Lb-link bl-w1210m Firmware Lb-link |
17 Jun 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
14 Jun 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-14 15:15
Updated : 2025-05-30 14:12
NVD link : CVE-2024-33377
Mitre link : CVE-2024-33377
JSON object : View
Products Affected
lb-link
- bl-w1210m_firmware
- bl-w1210m
CWE
No CWE.