CVE-2014-3872
27.05.2014, 13:55
Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password.
Vendor | Product | Version |
---|---|---|
dlink | dap-1350_firmware | 𝑥 ≤ 1.14 |
dlink | dap-1350_firmware | 1.10 |
𝑥
= Vulnerable software versions
References