# Exploit Title: Teracom Modem CSRF Vulnerability # Date: 20-04-2014 # Author: Rakesh S # Software Link: http://www.teracom.in/ # Version: T2-B-Gawv1.4U10Y-BI The vulnerability exists due to insufficient validation of HTTP request origin. A remote attacker can trick a logged-in administrator to visit a specially crafted webpage to change SSID and its password. The exploitation example below changes password for the SSID: Submit