CVE-2019-17353

Severity
8.2HIGH
EPSS
0.5%
top 34.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 9
Latest updateMay 24

Description

An issue discovered on D-Link DIR-615 devices with firmware version 20.05 and 20.07. wan.htm can be accessed directly without authentication, which can lead to disclosure of information about the WAN, and can also be leveraged by an attacker to modify the data fields of the page.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:NExploitability: 3.9 | Impact: 4.2

Affected Packages1 packages

NVDdlink/dir-615_firmware20.05, 20.07+1

🔴Vulnerability Details

2
GHSA
GHSA-mvx2-hv6h-xrr4: An issue discovered on D-Link DIR-615 devices with firmware version 202022-05-24
CVEList
CVE-2019-17353: An issue discovered on D-Link DIR-615 devices with firmware version 202019-10-09