Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in setup/security.cgi in D-Link DCS-900, DCS-2000, and DCS-5300 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via the rootpass parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
D-Link 跨站请求伪造漏洞
Vulnerability Description
D-Link是台湾友讯集团所创立的网络公司,致力于局域网、宽带网、无线网、语音网及相关网络设备的研发、生产和行销。 D-Link DCS-900、DCS-2000和DCS-5300版本中的setup/security.cgi中存在跨站请求伪造(CSRF)漏洞。远程攻击者可利用该漏洞通过rootpass参数,劫持管理员身份验证更改管理员密码的请求。
CVSS Information
N/A
Vulnerability Type
N/A