PT-2024-28175 · Smi · Smi-Ex-5414W
Faiyaz Ahmad
+1
·
Published
2024-04-16
·
Updated
2024-05-17
·
CVE-2024-3873
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
SMI SMI-EX-5414W versions up to 1.0.03
Description
A vulnerability was found in the Web Interface component of the affected software, leading to cross-site request forgery. The manipulation can be initiated remotely.
Recommendations
For SMI SMI-EX-5414W versions up to 1.0.03, update to a patched version and review web application security controls to prevent future cross-site request forgery attacks.
As a temporary workaround, consider restricting access to the Web Interface to minimize the risk of exploitation.
Exploit
Fix
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Smi-Ex-5414W