ID

VAR-E-201403-0310


TITLE

D-Link DSL-2640U Multiple Cross Site Request Forgery Vulnerabilities

Trust: 0.3

sources: BID: 66091

DESCRIPTION

D-Link DSL-2640U is prone to multiple cross-site request-forgery vulnerabilities.
Exploiting these issues may allow a remote attacker to perform certain unauthorized actions. This may lead to further attacks.
D-Link DSL-2640U 1.0.24WW and prior are vulnerable.

Trust: 0.3

sources: BID: 66091

AFFECTED PRODUCTS

vendor:d linkmodel:dsl-2640uscope:eqversion:1.0.24

Trust: 0.3

sources: BID: 66091

EXPLOIT

To exploit these issues, an attacker must entice an unsuspecting victim to follow a malicious URI or visit a malicious website.

Trust: 0.3

sources: BID: 66091

PRICE

Free

Trust: 0.3

sources: BID: 66091

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 66091

CREDITS

TeaM MosTa

Trust: 0.3

sources: BID: 66091

EXTERNAL IDS

db:DLINKid:SAP10015

Trust: 0.3

db:BIDid:66091

Trust: 0.3

sources: BID: 66091

REFERENCES

url:http://www.dlink.com/

Trust: 0.3

url:http://securityadvisories.dlink.com/security/publication.aspx?name=sap10015

Trust: 0.3

sources: BID: 66091

SOURCES

db:BIDid:66091

LAST UPDATE DATE

2022-07-27T09:49:43.455000+00:00


SOURCES UPDATE DATE

db:BIDid:66091date:2014-03-10T00:00:00

SOURCES RELEASE DATE

db:BIDid:66091date:2014-03-10T00:00:00