Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-16329 | A remote attacker can conduct a cross-site request forgery (CSRF) attack on OPTILINK OP-XT71000N Hardware Version: V2.2 , Firmware Version: OP_V3.3.1-191028. The vulnerability is due to insufficient CSRF protections for the "mgm_config_file.asp" because of which attacker can create a crafted "csrf form" which sends " malicious xml data" to "/boaform/admin/formMgmConfigUpload". the exploit allows attacker to "gain full privileges" and to "fully compromise of router & network". |
| Link | Providers |
|---|---|
| https://github.com/huzaifahussain98/CVE-2020-23585 |
|
Fri, 25 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-25T20:43:00.889Z
Reserved: 2020-08-13T00:00:00.000Z
Link: CVE-2020-23585
Updated: 2024-08-04T14:58:15.192Z
Status : Modified
Published: 2022-11-23T01:15:09.707
Modified: 2025-04-25T21:15:17.380
Link: CVE-2020-23585
No data.
OpenCVE Enrichment
No data.
EUVD