HIGH
In MIELE XGW 3000 ZigBee Gateway before 2.4.0, a malicious website visited by an authenticated admin user or a malicious mail is allowed to make arbitrary changes in the "admin panel" because there is no CSRF protection
Published Feb 24, 2020
8.8
HIGHCVSS 3.1
EPSS 0.36%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.