CVE-2019-19225
04.03.2020, 19:15
A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to change DNS servers without being authenticated on the admin interface by submitting a crafted Forms/dns_1 POST request.Enginsight
Vendor | Product | Version |
---|---|---|
dlink | dsl-2680_firmware | 1.03 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References