CVE-2019-1010155

** DISPUTED ** D-Link DSL-2750U 1.11 is affected by: Authentication Bypass. The impact is: denial of service and information leakage. The component is: login. NOTE: Third parties dispute this issues as not being a vulnerability because although the wizard is accessible without authentication, it can't actually configure anything. Thus, there is no denial of service or information leakage.
References
Link Resource
http://www.securityfocus.com/bid/109351 Broken Link Third Party Advisory VDB Entry
https://cxsecurity.com/issue/WLB-2018080199 Third Party Advisory
https://www.youtube.com/watch?v=7sk6agpcA_s Exploit Third Party Advisory
https://youtu.be/BQQbp2vn_wY Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dsl-2750u_firmware:1.11:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dsl-2750u:-:*:*:*:*:*:*:*

History

01 Mar 2023, 16:39

Type Values Removed Values Added
References (MISC) https://www.youtube.com/watch?v=7sk6agpcA_s - (MISC) https://www.youtube.com/watch?v=7sk6agpcA_s - Exploit, Third Party Advisory
References (BID) http://www.securityfocus.com/bid/109351 - Third Party Advisory, VDB Entry (BID) http://www.securityfocus.com/bid/109351 - Broken Link, Third Party Advisory, VDB Entry
References (MISC) https://cxsecurity.com/issue/WLB-2018080199 - (MISC) https://cxsecurity.com/issue/WLB-2018080199 - Third Party Advisory

Information

Published : 2019-07-23 14:15

Updated : 2024-08-05 03:15


NVD link : CVE-2019-1010155

Mitre link : CVE-2019-1010155

CVE.ORG link : CVE-2019-1010155


JSON object : View

Products Affected

dlink

  • dsl-2750u
  • dsl-2750u_firmware