Alice Gate2 Plus Wi-Fi Router - Cross-Site Request Forgery
Author: WarGame
type: webapps
platform: cgi
port:
date_added: 2008-01-21
date_updated: 2014-01-20
verified: 1
codes: CVE-2008-7165;OSVDB-40739
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/27374/info
Alice Gate2 Plus Wi-Fi routers are prone to a cross-site request-forgery vulnerability.
An attacker can exploit this issue to alter administrative configuration on affected devices. Specifically, altering the wireless encryption settings on devices has been demonstrated. Other attacks may also be possible.
http://www.example.com/cp06_wifi_m_nocifr.cgi?wlChannel=Auto&wlRadioEnable=on