HIGH · 10.0

CVE-2013-7282

The management web interface on the Nisuta NS-WIR150NE router with firmware 5.07.41 and Nisuta NS-WIR300N router with firmware 5.07.36_NIS01 allows remote attackers to bypass authentication via a "Coo...

Vulnerability Description

The management web interface on the Nisuta NS-WIR150NE router with firmware 5.07.41 and Nisuta NS-WIR300N router with firmware 5.07.36_NIS01 allows remote attackers to bypass authentication via a "Cookie: :language=en" HTTP header.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
NisutaNs-Wir150Ne Firmware5.07.41
NisutaNs-Wir150Ne-
NisutaNs-Wir300N Firmware5.07.36_nis01
NisutaNs-Wir300N-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-7282?

CVE-2013-7282 is a vulnerability with a CVSS score of 10.0 (HIGH). The management web interface on the Nisuta NS-WIR150NE router with firmware 5.07.41 and Nisuta NS-WIR300N router with firmware 5.07.36_NIS01 allows remote attackers to bypass authentication via a "Coo...

How severe is CVE-2013-7282?

CVE-2013-7282 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-7282?

Check the references section above for vendor advisories and patch information. Affected products include: Nisuta Ns-Wir150Ne Firmware, Nisuta Ns-Wir150Ne, Nisuta Ns-Wir300N Firmware, Nisuta Ns-Wir300N.