[] NeoSense

Alice Gate2 Plus Wi-Fi Router - Cross-Site Request Forgery

Author: WarGame
type: webapps
platform: cgi
port: 
date_added: 2008-01-21 
date_updated: 2014-01-20 
verified: 1 
codes: CVE-2008-7165;OSVDB-40739 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/27374/info

Alice Gate2 Plus Wi-Fi routers are prone to a cross-site request-forgery vulnerability.

An attacker can exploit this issue to alter administrative configuration on affected devices. Specifically, altering the wireless encryption settings on devices has been demonstrated. Other attacks may also be possible.

http://www.example.com/cp06_wifi_m_nocifr.cgi?wlChannel=Auto&wlRadioEnable=on