Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
D-Link DCS-936L devices with firmware before 1.05.07 have an inadequate CSRF protection mechanism that requires the device's IP address to be a substring of the HTTP Referer header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
D-Link DCS-936L设备安全漏洞
Vulnerability Description
D-Link DCS-936L devices是友讯(D-Link)公司的一款网络摄像机。 使用1.05.07之前的版本固件的D-Link DCS-936L设备存在安全漏洞,该漏洞源于程序使用了不适当的CSRF保护机制。攻击者可利用该漏洞创建新用户,使用恶意的固件替换原来的固件或将用户设备连接到恶意的无线网络。
CVSS Information
N/A
Vulnerability Type
N/A