ID

VAR-E-201403-0415


TITLE

D-Link DIR-600 Multiple Cross-Site Request Forgery Vulnerabilities

Trust: 0.3

sources: BID: 66092

DESCRIPTION

D-Link DIR-600 is prone to multiple cross-site request-forgery vulnerabilities.
Exploiting these issues may allow a remote attacker to perform certain unauthorized actions. This may lead to further attacks.

Trust: 0.3

sources: BID: 66092

AFFECTED PRODUCTS

vendor:d linkmodel:dir-600 2.16wwscope: - version: -

Trust: 0.3

sources: BID: 66092

EXPLOIT

To exploit these issues, an attacker must entice an unsuspecting victim to follow a malicious URI or visit a malicious website.

Trust: 0.3

sources: BID: 66092

PRICE

Free

Trust: 0.3

sources: BID: 66092

TYPE

Configuration Error

Trust: 0.3

sources: BID: 66092

CREDITS

Dawid Czagan

Trust: 0.3

sources: BID: 66092

EXTERNAL IDS

db:DLINKid:SAP10018

Trust: 0.3

db:BIDid:66092

Trust: 0.3

sources: BID: 66092

REFERENCES

url:http://resources.infosecinstitute.com/csrf-unauthorized-remote-admin-access/

Trust: 0.3

url:http://www.dlink.com/

Trust: 0.3

url:http://securityadvisories.dlink.com/security/publication.aspx?name=sap10018

Trust: 0.3

sources: BID: 66092

SOURCES

db:BIDid:66092

LAST UPDATE DATE

2022-07-27T09:49:43.391000+00:00


SOURCES UPDATE DATE

db:BIDid:66092date:2014-03-10T00:00:00

SOURCES RELEASE DATE

db:BIDid:66092date:2014-03-10T00:00:00