Unrated severityNVD Advisory· Published May 6, 2009· Updated Apr 23, 2026
CVE-2009-1561
CVE-2009-1561
Description
Cross-site request forgery (CSRF) vulnerability in administration.cgi on the Cisco Linksys WRT54GC router with firmware 1.05.7 allows remote attackers to hijack the intranet connectivity of arbitrary users for requests that change the administrator password via the sysPasswd and sysConfirmPasswd parameters.
Affected products
1- cpe:2.3:h:cisco:wrt54gc:1.05.7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- packetstormsecurity.org/0904-exploits/linksysadmin-passwd.txtnvdExploit
- www.securityfocus.com/bid/34616nvdExploit
- secunia.com/advisories/34805nvdVendor Advisory
- www.vupen.com/english/advisories/2009/1172nvdVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2009-04/0198.htmlnvd
- www.falandodeseguranca.comnvd
News mentions
0No linked articles in our index yet.