GHSA-mr94-c76x-rwp9
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to execute malicious commands on behalf of a legitimate user when xsrf-token data is intercepted.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: August 1, 2025 6:44 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.