"value":"Multiple cross-site request forgery (CSRF) vulnerabilities in WS-Proxy in Eye-Fi 1.1.2 allow remote attackers to hijack the authentication of users for requests that modify configuration via a SOAPAction parameter of (1) urn:SetOptions for autostart, (2) urn:SetDesktopSync for file upload, or (3) urn:SetFolderConfig for file download location or modification of authentication credentials; and (4) urn:AddNetwork for adding an arbitrary Service Set Identifier (SSID) to hijack the image upload."
},
{
"lang":"es",
"value":"M\u00faltiples vulnerabilidades de falsificaci\u00f3n de petici\u00f3n en sitios cruzados(CSRF)en WS-Proxy en Eye-Fi v1.1.2 permite a atacantes remotos secuestrar las autentificaciones para peticiones de usuarios que modifican la configuraci\u00f3n a trav\u00e9s del par\u00e1metro SOAPAction de (1) urn:SetOptions para autostart, (2) urn:SetDesktopSync para el fichero upload, o (3) urn:SetFolderConfig para fichero de localizaci\u00f3n de descarga y modificaci\u00f3n de credenciales de autentificaci\u00f3n y (4) urn:AddNetwork para a\u00f1adir el Service Set Identifier (SSID)a su elecci\u00f3n para secuestrar la imagen subida."