Vuln: D-Link DSL-2750U Multiple Authentication Bypass Vulnerabilities



D-Link DSL-2750U is prone to multiple authentication-bypass vulnerabilities.

An attacker can exploit these issues to bypass authentication mechanism and perform unauthorized actions. This may lead to further attacks.

D-Link DSL-2750U Router 1.11 is vulnerable; other versions may also be affected.
exploit



The researcher has created a proof-of-concept to demonstrate these issues. Please see the references for more information.
solution



Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: vuldb@securityfocus.com.

info



Bugtraq ID:109351
Class:Input Validation Error
CVE:CVE-2019-1010155
CVE-2019-1010156
Remote:Yes
Local:No
Published:Jul 23 2019 12:00AM
Updated:Jul 23 2019 12:00AM
Credit:ADMIN_Joker
Vulnerable:D-Link DSL-2750U 1.11
Not Vulnerable:
references



References:


from SecurityFocus Vulnerabilities https://ift.tt/2Oe0Dsd