D-Link DSL-2740R Web Interface Remote Poisoning Vulnerability
BID:72339
Info
D-Link DSL-2740R Web Interface Remote Poisoning Vulnerability
| Bugtraq ID: | 72339 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 27 2015 12:00AM |
| Updated: | Jan 27 2015 12:00AM |
| Credit: | Todor Donev |
| Vulnerable: |
DLink DSL-2740R 0 |
| Not Vulnerable: | |
Discussion
D-Link DSL-2740R Web Interface Remote Poisoning Vulnerability
D-Link DSL-2740R is prone to a remote vulnerability that allows attackers to modify the DNS settings.
Successful exploits will allow the attacker to manipulate the DNS settings, potentially facilitating man-in-the-middle, session-hijacking, or denial-of-service attacks between the client and a legitimate DNS server.
D-Link DSL-2740R is prone to a remote vulnerability that allows attackers to modify the DNS settings.
Successful exploits will allow the attacker to manipulate the DNS settings, potentially facilitating man-in-the-middle, session-hijacking, or denial-of-service attacks between the client and a legitimate DNS server.
Exploit / POC
D-Link DSL-2740R Web Interface Remote Poisoning Vulnerability
Attackers can use standard commands to exploit this issue.
Attackers can use standard commands to exploit this issue.
References
D-Link DSL-2740R Web Interface Remote Poisoning Vulnerability
References:
References:
- Dlink DSL-2740R Home Page (Dlink )