Post

D Link Dsl 28881a Unauthorized Access Cve 2020 24579

D Link Dsl 28881a Unauthorized Access Cve 2020 24579

D-Link DSL-28881A Unauthorized access CVE-2020-24579

Vulnerability Description

The router web portal is insufficient authentication to access any authenticated management page without entering the correct password.

Vulnerability Impact

D-Link DSL-2888A

Network surveying and mapping

body=”DSL-2888A”

Vulnerability reappears

Enter any password to establish a connection on the login page

img

1
2
3
跳转到 https://xxx.xxx.xxx.xxx/page/login/login.html?error=fail 显示密码错误

再请求URL https://xxx.xxx.xxx.xxx/WiFi.shtml 未授权访问后台

img

This post is licensed under CC BY 4.0 by the author.