vendor:
DIR Series Routers
by:
AKAT-1, 22733db72ab3ed94b5f8a1ffcde850251fe6f466, c8e74ebd8392fda4788179f9a02bb49337638e7b
7,5
CVSS
HIGH
Local File Disclosure
200
CWE
Product Name: DIR Series Routers
Affected Version From: DIR-300 (all), DIR-600 (all), DIR-615 (fw 4.0)
Affected Version To: DIR-300 (all), DIR-600 (all), DIR-615 (fw 4.0)
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2013
Multiple D-Link DIR Series Routers Local File Disclosure Vulnerability
Multiple D-Link DIR series routers are prone to a local file-disclosure vulnerability because it fails to adequately validate user-supplied input. Exploiting this vulnerability would allow an attacker to obtain potentially sensitive information from local files on devices running the vulnerable application. This may aid in further attacks.
Mitigation:
Administrators should ensure that user-supplied input is properly validated and that sensitive information is not stored in local files.