D-Link DSL-504T allows remote attackers to bypass authentication and gain privileges, such as upgrade firmware, restart the router or restore a saved configuration, via a direct request to firmwarecfg.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=111722515805478&w=2 | Third Party Advisory |
http://secunia.com/advisories/15422 | Broken Link |
http://www.securityfocus.com/bid/13679 | Broken Link Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2005-05-26 04:00
Updated : 2024-01-25 21:08
NVD link : CVE-2005-1827
Mitre link : CVE-2005-1827
CVE.ORG link : CVE-2005-1827
JSON object : View
Products Affected
dlink
- dsl-504t_firmware
- dsl-504t
CWE
CWE-425
Direct Request ('Forced Browsing')