4.9
CVE-2013-7005
- EPSS 0.04%
- Published 19.12.2013 04:24:57
- Last modified 11.04.2025 00:51:21
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DSR-500N, DSR-1000, and DSR-1000N with firmware before 1.08B77 stores account passwords in cleartext, which allows local users to obtain sensitive information by reading the Users[#]["Password"] fields in /tmp/teamf1.cfg.ascii.
Data is provided by the National Vulnerability Database (NVD)
Dlink ≫ Dsr-150 Firmware Version <= 1.08b29
Dlink ≫ Dsr-150 Firmware Version1.05b29
Dlink ≫ Dsr-150 Firmware Version1.05b35
Dlink ≫ Dsr-150 Firmware Version1.05b46
Dlink ≫ Dsr-150 Firmware Version1.05b50
Dlink ≫ Dsr-250 Firmware Version <= 1.08b39
Dlink ≫ Dsr-250 Firmware Version1.01b46
Dlink ≫ Dsr-250 Firmware Version1.01b56
Dlink ≫ Dsr-250 Firmware Version1.05b20
Dlink ≫ Dsr-250 Firmware Version1.05b53
Dlink ≫ Dsr-250 Firmware Version1.08b31
Dlink ≫ Dsr-1000n Firmware Version <= 1.08b51
Dlink ≫ Dsr-1000n Firmware Version1.01b50
Dlink ≫ Dsr-1000n Firmware Version1.02b11
Dlink ≫ Dsr-1000n Firmware Version1.02b25
Dlink ≫ Dsr-1000n Firmware Version1.03b12
Dlink ≫ Dsr-1000n Firmware Version1.03b23
Dlink ≫ Dsr-1000n Firmware Version1.03b27
Dlink ≫ Dsr-1000n Firmware Version1.03b36
Dlink ≫ Dsr-1000n Firmware Version1.03b43
Dlink ≫ Dsr-1000n Firmware Version1.04b58
Dlink ≫ Dsr-1000n Firmware Version1.06b43
Dlink ≫ Dsr-1000n Firmware Version1.06b53
Dlink ≫ Dsr-150n Firmware Version <= 1.05b48
Dlink ≫ Dsr-500 Firmware Version <= 1.08b51
Dlink ≫ Dsr-500 Firmware Version1.02b11
Dlink ≫ Dsr-500 Firmware Version1.02b25
Dlink ≫ Dsr-500 Firmware Version1.03b12
Dlink ≫ Dsr-500 Firmware Version1.03b23
Dlink ≫ Dsr-500 Firmware Version1.03b27
Dlink ≫ Dsr-500 Firmware Version1.03b36
Dlink ≫ Dsr-500 Firmware Version1.03b43
Dlink ≫ Dsr-500 Firmware Version1.04b58
Dlink ≫ Dsr-500 Firmware Version1.06b43
Dlink ≫ Dsr-500 Firmware Version1.06b53
Dlink ≫ Dsr-1000 Firmware Version <= 1.08b51
Dlink ≫ Dsr-1000 Firmware Version1.01b50
Dlink ≫ Dsr-1000 Firmware Version1.02b11
Dlink ≫ Dsr-1000 Firmware Version1.02b25
Dlink ≫ Dsr-1000 Firmware Version1.03b12
Dlink ≫ Dsr-1000 Firmware Version1.03b23
Dlink ≫ Dsr-1000 Firmware Version1.03b27
Dlink ≫ Dsr-1000 Firmware Version1.03b36
Dlink ≫ Dsr-1000 Firmware Version1.03b43
Dlink ≫ Dsr-1000 Firmware Version1.04b58
Dlink ≫ Dsr-1000 Firmware Version1.06b43
Dlink ≫ Dsr-1000 Firmware Version1.06b53
Dlink ≫ Dsr-250n Firmware Version <= 1.08b39
Dlink ≫ Dsr-250n Firmware Version1.01b46
Dlink ≫ Dsr-250n Firmware Version1.01b56
Dlink ≫ Dsr-250n Firmware Version1.05b20
Dlink ≫ Dsr-250n Firmware Version1.05b53
Dlink ≫ Dsr-250n Firmware Version1.08b31
Dlink ≫ Dsr-500n Firmware Version <= 1.08b51
Dlink ≫ Dsr-500n Firmware Version1.02b11
Dlink ≫ Dsr-500n Firmware Version1.02b25
Dlink ≫ Dsr-500n Firmware Version1.03b12
Dlink ≫ Dsr-500n Firmware Version1.03b23
Dlink ≫ Dsr-500n Firmware Version1.03b27
Dlink ≫ Dsr-500n Firmware Version1.03b36
Dlink ≫ Dsr-500n Firmware Version1.03b43
Dlink ≫ Dsr-500n Firmware Version1.04b58
Dlink ≫ Dsr-500n Firmware Version1.06b43
Dlink ≫ Dsr-500n Firmware Version1.06b53
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.088 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.9 | 3.9 | 6.9 |
AV:L/AC:L/Au:N/C:C/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.