Re: Linksys Cisco Wag120N CSRF Vulnerability

看板Bugtraq作者時間15年前 (2011/02/26 05:32), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/2 (看更多)
I would like to recommend to people who want to test the code to disable/wipe out unnecessary options such as "remote_management" and "http_wanport" since they could give eventual outside attacker chances of authentication. Another doubt lies on the possibility that this code implictly relies on a previous form of authentication for being effective.
文章代碼(AID): #1DQ1_IB5 (Bugtraq)
文章代碼(AID): #1DQ1_IB5 (Bugtraq)