CVE-2007-4389
Cross-site request forgery (CSRF) vulnerability in /xslt in 2wire 1701HG, 1800HW, and 2071 Gateway routers, with 3.17.5, 3.7.1, and 5.29.51 software, allows remote attackers to create DNS mappings as administrators, and conduct DNS poisoning attacks, via the NAME and ADDR parameters.
Published:Aug 17, 2007
Last Modified:Apr 23, 2026
EPS:Aug 17, 2007
EPSS Score:0.05009
CVSS Score:7.8
Affected Products
Vendor
Product
Action
Vendor
2wire
Product
1701hg Router
2wire
1701hg Router
Vendor
2wire
Product
1800hw Router
2wire
1800hw Router
Vendor
2wire
Product
2071 Router
2wire
2071 Router
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
