Vulnerability Details CVE-2016-1228
Cross-site request forgery (CSRF) vulnerability on NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1006 and earlier and NTT WEST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1005 and earlier allows remote attackers to hijack the authentication of arbitrary users.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.6%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.8
Products affected by CVE-2016-1228
-
cpe:2.3:h:ntt-east:pr-400mi:-
-
cpe:2.3:h:ntt-east:rt-400mi:-
-
cpe:2.3:h:ntt-east:rv-440mi:-
-
cpe:2.3:h:ntt-west:pr-400mi:-
-
cpe:2.3:h:ntt-west:rt-400mi:-
-
cpe:2.3:h:ntt-west:rv-440mi:-
-
cpe:2.3:o:ntt-east:pr-400mi_firmware:07.00.1006
-
cpe:2.3:o:ntt-east:rt-400mi_firmware:-
-
cpe:2.3:o:ntt-east:rt-400mi_firmware:07.00.1006
-
cpe:2.3:o:ntt-east:rv-440mi_firmware:-
-
cpe:2.3:o:ntt-east:rv-440mi_firmware:07.00.1006
-
cpe:2.3:o:ntt-west:pr-400mi_firmware:-
-
cpe:2.3:o:ntt-west:pr-400mi_firmware:07.00.1005
-
cpe:2.3:o:ntt-west:rt-400mi_firmware:-
-
cpe:2.3:o:ntt-west:rt-400mi_firmware:07.00.1005
-
cpe:2.3:o:ntt-west:rv-440mi_firmware:-
-
cpe:2.3:o:ntt-west:rv-440mi_firmware:07.00.1005