CVE-2017-6411

Cross Site Request Forgery (CSRF) on D-Link DSL-2730U C1 IN_1.00 devices allows remote attackers to change the DNS or firewall configuration or any password.
References
Link Resource
http://www.securityfocus.com/bid/96560
https://www.exploit-db.com/exploits/41478/ Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dsl-2730u_firmware:in_1.00:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dsl-2730u:-:*:*:*:*:*:*:*

History

26 Apr 2023, 18:55

Type Values Removed Values Added
CPE cpe:2.3:h:d-link:dsl-2730u:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:dsl-2730u:-:*:*:*:*:*:*:*

Information

Published : 2017-03-06 06:59

Updated : 2024-02-04 19:11


NVD link : CVE-2017-6411

Mitre link : CVE-2017-6411

CVE.ORG link : CVE-2017-6411


JSON object : View

Products Affected

dlink

  • dsl-2730u_firmware
  • dsl-2730u
CWE
CWE-352

Cross-Site Request Forgery (CSRF)