01642 06 11 11 Arrange Call

CSRF Vulnerability in XZERES 442SR OS Allows Remote Admin Authentication Hijacking

CVE-2015-3950 · MEDIUM

CVE-2015-3950

Cross-site request forgery (CSRF) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to hijack the authentication of admins for requests that select a different default admin user via a GET request.

Learn more about our User Device Pen Test.