PatchSiren

Digisol CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Digisol CVE published 2017-02-21

CVE-2017-6127

CVE-2017-6127 is a high-severity cross-site request forgery issue in the DIGISOL DG-HR1400 Wireless Router web access portal. According to the CVE record, crafted requests to form2WlanBasicSetup.cgi can be used to hijack an authenticated administrator’s session and change wireless settings such as the SSID or Wi‑Fi password. Because the vulnerability is network-reachable and requires only user interaction [truncated]