vendor:
DIR-600
by:
Jithin D Kurup
9,8
CVSS
CRITICAL
Authentication Bypass
22
CWE
Product Name: DIR-600
Affected Version From: Hardware version: B1, Firmware version: 2.01
Affected Version To: Hardware version: B1, Firmware version: 2.01
Patch Exists: YES
Related CWE: CVE-2017-12943
CPE: h:d-link:dir-600_rev_bx
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: All Platforms
2017
D-Link DIR-600 – Authentication Bypass (Absolute Path Traversal Attack)
After Successfully Connected to D-Link DIR-600 Router(FirmWare Version : 2.01), Any User Can Easily Bypass The Router's Admin Panel Just by adding a simple payload into URL. D-Link DIR-600 Rev Bx devices with v2.x firmware allow remote attackers to read passwords via a model/__show_info.php?REQUIRE_FILE= absolute path traversal attack, as demonstrated by discovering the admin password.
Mitigation:
Disable remote login and use strong passwords for the router.