Multiple D-Link Products CVE-2013-1603 Hardcoded Credentials Security Bypass Vulnerability
BID:59571
CVE-2013-1603 |Info
Multiple D-Link Products CVE-2013-1603 Hardcoded Credentials Security Bypass Vulnerability
| Bugtraq ID: | 59571 |
| Class: | Access Validation Error |
| CVE: |
CVE-2013-1603 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 29 2013 12:00AM |
| Updated: | Apr 29 2013 12:00AM |
| Credit: | Pablo Santamaria |
| Vulnerable: |
D-Link WCS-1100 1.02 D-Link TESCO DCS-2121 1.05_TESCO D-Link TESCO DCS-2102 1.05_TESCO D-Link DCS-7510 1.00 D-Link DCS-7410 1.00 D-Link DCS-6410 1.00 D-Link DCS-5635 1.01 D-Link DCS-5605 1.01 D-Link DCS-5230L 1.02 D-Link DCS-5230 1.02 D-Link DCS-3430 1.02 D-Link DCS-3411 1.02 D-Link DCS-3410 1.02 D-Link DCS-2121 1.06_FR D-Link DCS-2121 1.06 D-Link DCS-2121 1.05_RU D-Link DCS-2102 1.06_FR D-Link DCS-2102 1.06 D-Link DCS-2102 1.05_RU D-Link DCS-1130L 1.04 D-Link DCS-1130 1.04_US D-Link DCS-1130 1.03 D-Link DCS-1100L 1.04 D-Link DCS-1100 1.04_US D-Link DCS-1100 1.03 |
| Not Vulnerable: | |
Discussion
Multiple D-Link Products CVE-2013-1603 Hardcoded Credentials Security Bypass Vulnerability
Multiple D-Link products are prone to a security-bypass vulnerability.
Remote attackers can exploit this issue to bypass the authentication mechanism and gain unauthorized access.
http://drupal.org/node/207891
Multiple D-Link products are prone to a security-bypass vulnerability.
Remote attackers can exploit this issue to bypass the authentication mechanism and gain unauthorized access.
http://drupal.org/node/207891
Exploit / POC
Multiple D-Link Products CVE-2013-1603 Hardcoded Credentials Security Bypass Vulnerability
An attacker can exploit this issue using a web browser.
An attacker can exploit this issue using a web browser.
References
Multiple D-Link Products CVE-2013-1603 Hardcoded Credentials Security Bypass Vulnerability
References:
References:
- D-Link Homepage (D-Link)
- D-Link IP Cameras Multiple Vulnerabilities (coresecurity)