High severity8.8NVD Advisory· Published Feb 21, 2017· Updated May 13, 2026
CVE-2017-6127
CVE-2017-6127
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in the access portal on the DIGISOL DG-HR1400 Wireless Router with firmware 1.00.02 allow remote attackers to hijack the authentication of administrators for requests that (1) change the SSID, (2) change the Wi-Fi password, or (3) possibly have unspecified other impact via crafted requests to form2WlanBasicSetup.cgi.
Affected products
1- cpe:2.3:o:digisol:dg-hr1400_firmware:1.00.02:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- drive.google.com/file/d/0B6715xUqH18MeV9GOVE0ZmFrQUU/viewnvdExploitThird Party Advisory
- seclists.org/fulldisclosure/2017/Feb/66nvd
- www.securityfocus.com/bid/96369nvd
News mentions
0No linked articles in our index yet.