7.6
CVE-2013-2271
- EPSS 4.91%
- Veröffentlicht 19.11.2013 04:47:13
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Erkennungen
The D-Link DSL-2740B Gateway with firmware EU_1.0, when an active administrator session exists, allows remote attackers to bypass authentication and gain administrator access via a request to login.cgi.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dlink ≫ Dsl-2740b Firmware Version -
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.91% | 0.911 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.6 | 4.9 | 10 |
AV:N/AC:H/Au:N/C:C/I:C/A:C
|
http://packetstormsecurity.com/files/120613/dlinkdsl2740b-bypass.txt
http://securityadvisories.dlink.com/security/publication.aspx?name=SAP10004
http://www.webapp-security.com/2013/03/d-link-dsl-2740b-adsl-router-authentication-bypass
http://www.webapp-security.com/wp-content/uploads/2013/03/D-Link-DSL-2740B-ADSL-Router-Authentication-Bypass2.txt