ETIC Telecom Remote Access Server
cpe:2.3:a:etictelecom:remote_access_server:*:*:*:*:*:*:*, +1 more
- < 4.5.0
- < 4.9.19
A cross-site request forgery (CSRF) vulnerability has been identified in ETIC Telecom Remote Access Server (RAS) versions prior to 4.9.19. This vulnerability allows an external attacker to manipulate an end user into sending a 'setconf' method request without the need for a CSRF token, potentially causing a denial-of-service condition on the device.
Exploitation of this vulnerability can lead to a denial-of-service condition on the affected device.
Users are advised to update ETIC Telecom Remote Access Server to version 4.9.19 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.