CVE-2024-33377

LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page. Attackers can cause victim users to perform arbitrary operations via interaction with crafted elements on the web page.
Configurations

No configuration.

History

06 Sep 2024, 17:35

Type Values Removed Values Added
CWE CWE-1021
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1

17 Jun 2024, 18:15

Type Values Removed Values Added
References
  • () https://github.com/ShravanSinghRathore/Security-Advisory-Multiple-Vulnerabilities-in-LB-link-BL-W1210M-Router/wiki/Clickjacking-%28CVE%E2%80%902024%E2%80%9033377%29 -

17 Jun 2024, 12:42

Type Values Removed Values Added
Summary
  • (es) Se descubrió que LB-LINK BL-W1210M v2.0 contiene una vulnerabilidad de clickjacking a través de la página de inicio de sesión del administrador. Los atacantes pueden hacer que los usuarios víctimas realicen operaciones arbitrarias mediante la interacción con elementos manipulados en la página web.

14 Jun 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-14 15:15

Updated : 2024-09-06 17:35


NVD link : CVE-2024-33377

Mitre link : CVE-2024-33377

CVE.ORG link : CVE-2024-33377


JSON object : View

Products Affected

No product.

CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames