CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01_beta_20170306. This can be used to bypass authentication and insert XSS sequences or possibly have unspecified other impact.
                
            References
                    | Link | Resource | 
|---|---|
| http://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10072 | Vendor Advisory | 
| http://www.securityfocus.com/bid/96999 | 
Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
History
                    No history.
Information
                Published : 2017-03-22 05:59
Updated : 2023-04-26 18:55
NVD link : CVE-2017-5874
Mitre link : CVE-2017-5874
CVE.ORG link : CVE-2017-5874
JSON object : View
Products Affected
                dlink
- dir-600m
 
d-link
- dir-600m_firmware
 
CWE
                
                    
                        
                        CWE-352
                        
            Cross-Site Request Forgery (CSRF)
