PT-2024-28175 · Smi · Smi-Ex-5414W

Faiyaz Ahmad

+1

·

Published

2024-04-16

·

Updated

2024-05-17

·

CVE-2024-3873

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions SMI SMI-EX-5414W versions up to 1.0.03
Description A vulnerability was found in the Web Interface component of the affected software, leading to cross-site request forgery. The manipulation can be initiated remotely.
Recommendations For SMI SMI-EX-5414W versions up to 1.0.03, update to a patched version and review web application security controls to prevent future cross-site request forgery attacks. As a temporary workaround, consider restricting access to the Web Interface to minimize the risk of exploitation.

Exploit

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-3873

Affected Products

Smi-Ex-5414W