Nixpkgs Security Tracker

Login with GitHub

Suggestions search

With package: hyperspeedcube

Found 1 matching suggestions

Untriaged
created 2 weeks, 2 days ago
Teradek Cube 7.3.6 Cross-Site Request Forgery Password Change

Teradek Cube 7.3.6 contains a cross-site request forgery vulnerability that allows attackers to change administrative passwords without proper request validation. Attackers can craft a malicious web page with a hidden form to submit password change requests to the device's system configuration interface.

Affected products

Cube
  • ==7.3.6
  • ==7.3.15

Matching in nixpkgs

pkgs.classicube

Lightweight, custom Minecraft Classic/ClassiCube client with optional additions written from scratch in C

Package maintainers