CVE-2016-4854: Nttdocomo L-04d Firmware
High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in L-04D firmware version V10a and V10b allows remote attackers to hijack the authentication of administrators to perform arbitrary operations via unspecified vectors.
Affected products
- Nttdocomo L-04d Firmware: version v10a only; version v10b only
Published 2017-05-22. Last modified 2026-06-17.