HIGH · 7.5

CVE-2008-0524

Cross-site request forgery (CSRF) vulnerability in the management interface in multiple Yamaha RT series routers allows remote attackers to change password settings and probably other configuration se...

Vulnerability Description

Cross-site request forgery (CSRF) vulnerability in the management interface in multiple Yamaha RT series routers allows remote attackers to change password settings and probably other configuration settings as administrators via unspecified vectors.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
YamahaRt107EAll versions
YamahaRt52ProAll versions
YamahaRt56VAll versions
YamahaRt57IAll versions
YamahaRt58IAll versions
YamahaRt60WAll versions
YamahaRt80IAll versions
YamahaRta50IAll versions
YamahaRta52IAll versions
YamahaRta54IAll versions
YamahaRta55IAll versions
YamahaRtv700All versions
YamahaRtw65BAll versions
YamahaRtw65IAll versions
YamahaRtx1000All versions
YamahaRtx1100All versions
YamahaRtx1500All versions
YamahaSrt100All versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-0524?

CVE-2008-0524 is a vulnerability with a CVSS score of 7.5 (HIGH). Cross-site request forgery (CSRF) vulnerability in the management interface in multiple Yamaha RT series routers allows remote attackers to change password settings and probably other configuration se...

How severe is CVE-2008-0524?

CVE-2008-0524 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-0524?

Check the references section above for vendor advisories and patch information. Affected products include: Yamaha Rt107E, Yamaha Rt52Pro, Yamaha Rt56V, Yamaha Rt57I, Yamaha Rt58I.