Dlink Dsl-2730U Firmware vulnerabilities
2 known vulnerabilities affecting dlink/dsl-2730u_firmware.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2020-13960HIGHCVSS 7.5vin_1.102020-06-08
CVE-2020-13960 [HIGH] CVE-2020-13960: D-Link DSL 2730-U IN_1.10 and IN_1.11 and DIR-600M 3.04 devices have the domain.name string in the D
D-Link DSL 2730-U IN_1.10 and IN_1.11 and DIR-600M 3.04 devices have the domain.name string in the DNS resolver search path by default, which allows remote attackers to provide valid DNS responses (and also offer Internet services such as HTTP) for names that otherwise would have had an NXDOMAIN error, by registering a subdomain of the domain.name domain name
nvd
CVE-2017-6411HIGHCVSS 8.8PoCvin_1.002017-03-06
CVE-2017-6411 [HIGH] CWE-352 CVE-2017-6411: Cross Site Request Forgery (CSRF) on D-Link DSL-2730U C1 IN_1.00 devices allows remote attackers to
Cross Site Request Forgery (CSRF) on D-Link DSL-2730U C1 IN_1.00 devices allows remote attackers to change the DNS or firewall configuration or any password.
nvd