PT-2020-7416 · Cisco · Linksys E4200

Published

2020-02-05

·

Updated

2020-02-07

·

CVE-2013-2682

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Cisco Linksys E4200 version 1.0.05 Build 7
Description: The issue allows remote attackers to obtain sensitive information through a Clickjacking vulnerability.
Recommendations: For Cisco Linksys E4200 version 1.0.05 Build 7, consider disabling access to sensitive information until a patch is available. Restrict access to the device's web interface to minimize the risk of exploitation. Avoid using the device for sensitive operations until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Clickjacking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-2682

Affected Products

Linksys E4200