PT-2019-17920 · Hikari Denwa · Hikari Denwa Router/Home Gateway
Toshitsugu Yoneyama
·
Published
2019-09-12
·
Updated
2019-09-16
·
CVE-2019-5986
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Hikari Denwa router/Home GateWay versions Ver. 19.41 and earlier
Hikari Denwa router/Home GateWay versions Ver.19.01.0005 and earlier
Hikari Denwa router/Home GateWay versions Ver.19.40 and earlier
Hikari Denwa router/Home GateWay versions Ver.7.42 and earlier
Hikari Denwa router/Home GateWay versions Ver.07.00.1010 and earlier
Hikari Denwa router/Home GateWay versions Ver. 07.00.1012 and earlier
Hikari Denwa router/Home GateWay versions Ver.01.00.0090 and earlier
Hikari Denwa router/Home GateWay versions Ver.01.00.0070 and earlier
Hikari Denwa router/Home GateWay versions Ver.01.01.0014 and earlier
Hikari Denwa router/Home GateWay versions Ver.03.01.0019 and earlier
Hikari Denwa router/Home GateWay versions Ver.01.01.0011 and earlier
Description
A cross-site request forgery (CSRF) issue allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Recommendations
For Hikari Denwa router/Home GateWay version Ver. 19.41 and earlier, update to a version later than Ver. 19.41.
For Hikari Denwa router/Home GateWay version Ver.19.01.0005 and earlier, update to a version later than Ver.19.01.0005.
For Hikari Denwa router/Home GateWay version Ver.19.40 and earlier, update to a version later than Ver.19.40.
For Hikari Denwa router/Home GateWay version Ver.7.42 and earlier, update to a version later than Ver.7.42.
For Hikari Denwa router/Home GateWay version Ver.07.00.1010 and earlier, update to a version later than Ver.07.00.1010.
For Hikari Denwa router/Home GateWay version Ver. 07.00.1012 and earlier, update to a version later than Ver. 07.00.1012.
For Hikari Denwa router/Home GateWay version Ver.01.00.0090 and earlier, update to a version later than Ver.01.00.0090.
For Hikari Denwa router/Home GateWay version Ver.01.00.0070 and earlier, update to a version later than Ver.01.00.0070.
For Hikari Denwa router/Home GateWay version Ver.01.01.0014 and earlier, update to a version later than Ver.01.01.0014.
For Hikari Denwa router/Home GateWay version Ver.03.01.0019 and earlier, update to a version later than Ver.03.01.0019.
For Hikari Denwa router/Home GateWay version Ver.01.01.0011 and earlier, update to a version later than Ver.01.01.0011.
Fix
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hikari Denwa Router/Home Gateway