Products
Government
Resources
Community
Company
Partners
Sign In / Join
Sign In
Advisories
JM-DATA ONU JF511-TV 1.0.67 Cross-Site Request Forgery (CSRF) Vulnerability
Go Back
severity
medium
date
December 30, 2025
Affecting
JF511-TV 1.0.67, 1.0.62, 1.0.55
CVE
CVE-2022-50804
CWE
CWE-352 Cross-Site Request Forgery (CSRF)
CVSS
5.1
CVSS V4 Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
References
Zero Science Lab Disclosure (ZSL-2022-5708)
Packet Storm Security Exploit Entry
CXSecurity Vulnerability Listing
IBM X-Force Vulnerability Exchange Entry
JM-DATA Vendor Homepage
Credit
Neurogenesia
Description
JM-DATA ONU JF511-TV version 1.0.67 is vulnerable to cross-site request forgery (CSRF) attacks, allowing attackers to perform administrative actions on behalf of authenticated users without their knowledge or consent.