vendor:
DIR-601
by:
Kevin Randall
8.0
CVSS
HIGH
Credential Disclosure
200
CWE
Product Name: DIR-601
Affected Version From: Firmware: 2.02NA Hardware Version B1
Affected Version To: Firmware: 2.02NA Hardware Version B1
Patch Exists: YES
Related CWE: CVE-2018-12710
CPE: h:d-link:dir-601
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10 + Mozilla Firefox
2018
DLink DIR-601 – Credential Disclosure
Being local to the network and having only 'User' account (which is a low privilege account) access, an attacker can intercept the response from a POST request to obtain 'Admin' rights due to the admin password being displayed in XML.
Mitigation:
Ensure that the admin password is not displayed in plain text in the response of a POST request.