Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other camera models allows remote attackers to hijack the authentication of unspecified victims for requests that add users.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://seclists.org/fulldisclosure/2013/Jun/84 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T17:18:50.218Z
Reserved: 2013-06-06T00:00:00Z
Link: CVE-2013-3963

No data.

Status : Deferred
Published: 2013-10-01T19:55:09.443
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-3963

No data.