Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CSRF tokens are not used in the web application of Moxa OnCell G3100-HSPA Series version 1.4 Build 16062919 and prior, which makes it possible to perform CSRF attacks on the device administrator.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Moxa OnCell G3100-HSPA 跨站请求伪造漏洞
Vulnerability Description
Moxa OnCell G3100-HSPA是中国台湾摩莎(Moxa)公司的一款G3100-HSPA系列蜂窝网络网关设备。 Moxa OnCell G3100-HSPA 1.4 Build 16062919及之前固件版本中DE WEB应用程序存在跨站请求伪造漏洞,该漏洞源于WEB应用未充分验证请求是否来自可信用户。攻击者可利用该漏洞通过受影响客户端向服务器发送非预期的请求。
CVSS Information
N/A
Vulnerability Type
N/A