Ubee EVW327 - 'Enable Remote Access' Cross-Site Request Forgery (CSRF)
Vulnerability Description
Ubee EVW327 contains a cross-site request forgery vulnerability that allows attackers to enable remote access without user interaction. Attackers can craft a malicious webpage that automatically submits a form to change router remote access settings to port 8080 without the user's consent.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-47820
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- lated
Affected Vendor
Ubeeinteractive
View all reports →