OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Re: Multiple XSRF in DD-WRT (Remote Root Command Execution)

dan.crowleygmail.com
Date: Thu Dec 11 2008 - 13:42:58 CST


Apologies, I understand where the flaw lies now. I thought you meant the XRSF was triggered from within the DD-WRT interface.

I don't know how much of an impact this will really have though, I suppose it would depend on how long login sessions last on DD-WRT and how often the user logs into their router.

Still, good find!