ID
VAR-201302-0520
TITLE
D-Link DIR-645 Router Remote Verification Vulnerability
Trust: 0.6
DESCRIPTION
The D-Link DIR-645 is a router device. The D-Link DIR-645 application does not properly restrict access to certain scripts, allowing an attacker to exploit a vulnerability to submit a malicious request for sensitive information. D-Link DIR-645 routers are prone to a remote authentication-bypass vulnerability. Remote attackers can exploit this issue to bypass the authentication mechanism and gain unauthorized access. D-Link DIR-645 running firmware prior to version 1.03 are vulnerable
Trust: 0.81
IOT TAXONOMY
| category: | ['IoT', 'Network device'] | sub_category: | - | Trust: 0.6 |
AFFECTED PRODUCTS
| vendor: | d link | model: | dir-645 | scope: | eq | version: | 1.x | Trust: 0.6 |
| vendor: | d link | model: | dir-645 | scope: | eq | version: | 1.02 | Trust: 0.3 |
| vendor: | d link | model: | dir-645 | scope: | ne | version: | 1.03 | Trust: 0.3 |
THREAT TYPE
remote
Trust: 0.6
TYPE
Access Validation Error
Trust: 0.3
PATCH
| title: | D-Link DIR-645 Router Remote Verification Vulnerability Patch | url: | https://www.cnvd.org.cn/patchinfo/show/32531 | Trust: 0.6 |
EXTERNAL IDS
| db: | BID | id: | 58231 | Trust: 1.5 |
| db: | CNVD | id: | CNVD-2013-01418 | Trust: 0.6 |
| db: | CNNVD | id: | CNNVD-201303-018 | Trust: 0.6 |
REFERENCES
| url: | http://archives.neohapsis.com/archives/bugtraq/2013-02/0151.html | Trust: 0.6 |
| url: | http://www.securityfocus.com/bid/58231 | Trust: 0.6 |
| url: | http://www.dlink.com/ca/en/home-solutions/connect/routers/dir-645-wireless-n-home-router-1000 | Trust: 0.3 |
CREDITS
Roberto Paleari
Trust: 0.9
SOURCES
| db: | CNVD | id: | CNVD-2013-01418 |
| db: | BID | id: | 58231 |
| db: | CNNVD | id: | CNNVD-201303-018 |
LAST UPDATE DATE
2022-05-17T01:41:29.799000+00:00
SOURCES UPDATE DATE
| db: | CNVD | id: | CNVD-2013-01418 | date: | 2013-03-05T00:00:00 |
| db: | BID | id: | 58231 | date: | 2013-02-28T00:00:00 |
| db: | CNNVD | id: | CNNVD-201303-018 | date: | 2013-03-04T00:00:00 |
SOURCES RELEASE DATE
| db: | CNVD | id: | CNVD-2013-01418 | date: | 2013-03-05T00:00:00 |
| db: | BID | id: | 58231 | date: | 2013-02-28T00:00:00 |
| db: | CNNVD | id: | CNNVD-201303-018 | date: | 2013-02-28T00:00:00 |