ID

VAR-E-201311-0397


CVE

cve_id:CVE-2013-6811

Trust: 0.3

sources: BID: 64235

TITLE

D-Link DSL-6740U CVE-2013-6811 Cross Site Request Forgery Vulnerability

Trust: 0.3

sources: BID: 64235

DESCRIPTION

D-Link DSL-6740U is prone to a cross-site request-forgery vulnerability.
Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected device. Other attacks are also possible.

Trust: 0.3

sources: BID: 64235

AFFECTED PRODUCTS

vendor:d linkmodel:dsl-6740uscope:eqversion:0

Trust: 0.3

sources: BID: 64235

EXPLOIT

To exploit this issue, an attacker must entice an unsuspecting victim to follow a malicious URI or visit a malicious website.

Trust: 0.3

sources: BID: 64235

PRICE

Free

Trust: 0.3

sources: BID: 64235

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 64235

CREDITS

Liad Mizrachi

Trust: 0.3

sources: BID: 64235

EXTERNAL IDS

db:DLINKid:SAP10005

Trust: 0.3

db:NVDid:CVE-2013-6811

Trust: 0.3

db:BIDid:64235

Trust: 0.3

sources: BID: 64235

REFERENCES

url:http://www.dlink.com/

Trust: 0.3

url:http://securityadvisories.dlink.com/security/publication.aspx?name=sap10005

Trust: 0.3

sources: BID: 64235

SOURCES

db:BIDid:64235

LAST UPDATE DATE

2022-07-27T09:15:41.508000+00:00


SOURCES UPDATE DATE

db:BIDid:64235date:2013-11-25T00:00:00

SOURCES RELEASE DATE

db:BIDid:64235date:2013-11-25T00:00:00