Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in api/sms/send-sms in the Web UI 11.010.06.01.858 on Huawei E303 modems with software 22.157.18.00.858 allows remote attackers to hijack the authentication of administrators for requests that perform API operations and send SMS messages via a request element in an XML document.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Huawei E303调制解调器跨站请求伪造漏洞
Vulnerability Description
Huawei E303 modems是中国华为(Huawei)公司的一款无线宽带调制解调器产品。 使用22.157.18.00.858版本软件的Huawei E303调制解调器的Web UI 11.010.06.01.858版本中的api/sms/send-sms URL存在跨站请求伪造漏洞。远程攻击者可通过发送特制的请求利用该漏洞执行API操作,发送SMS消息。
CVSS Information
N/A
Vulnerability Type
N/A