• caglararli@hotmail.com
  • 05386281520

CVE-2023-7092 | Uniway UW-302VP 2.0 Admin Web Interface wlan_basic_set.cgi wlanssid cross-site request forgery

Çağlar Arlı      -    26 Views

CVE-2023-7092 | Uniway UW-302VP 2.0 Admin Web Interface wlan_basic_set.cgi wlanssid cross-site request forgery

A vulnerability was found in Uniway UW-302VP 2.0. It has been rated as problematic. This issue affects some unknown processing of the file /boaform/wlan_basic_set.cgi of the component Admin Web Interface. The manipulation of the argument wlanssid leads to cross-site request forgery. The identification of this vulnerability is CVE-2023-7092. The attack may be initiated remotely. Furthermore, there is an exploit available. The vendor was contacted early about this disclosure but did not respond in any way.