CVE-2014-5437: Arris TG862G – Cross-site Request Forgery (CSRF)

Posted by Seth Art on Dec 16

———–
Vendor:
———–
Arris Interactive, LLC (http://www.arrisi.com/)
ISP: Comcast Xfinity

—————————————–
Affected Products/Versions:
—————————————–
HW: Arris Touchstone TG862G/CT (Xfinity branded)
SW: Version 7.6.59S.CT (Tested)

—————–
Description:
—————–
Title: Cross-site Request Forgery (CSRF)
CVE: CVE-2014-5437
CWE: CWE-352:…

Leave a Reply