Vulnerabilities > Netgear > Raidiator

DATE CVE VULNERABILITY TITLE RISK
2013-12-12 CVE-2013-2752 Cross-Site Request Forgery (CSRF) vulnerability in Netgear Raidiator
Cross-site request forgery (CSRF) vulnerability in frontview/lib/np_handler.pl in NETGEAR ReadyNAS RAIDiator before 4.1.12 and 4.2.x before 4.2.24 allows remote attackers to hijack the authentication of users.
network
netgear CWE-352
6.8
2013-12-12 CVE-2013-2751 Code Injection vulnerability in Netgear Raidiator
Eval injection vulnerability in frontview/lib/np_handler.pl in the FrontView web interface in NETGEAR ReadyNAS RAIDiator before 4.1.12 and 4.2.x before 4.2.24 allows remote attackers to execute arbitrary Perl code via a crafted request, related to the "forgot password workflow."
network
low complexity
netgear CWE-94
critical
10.0