Skip to content
Permalink
Branch: master
Find file Copy path
Fetching contributors…
Cannot retrieve contributors at this time
27 lines (19 sloc) 1.09 KB
Dlink model DIR-825L, the latest firmware 2.10B1, there is a Information disclosure vulnerability.
This is due to the logical problem of permission judgment.
This will reveal the pin code, mac address, routing table, firmware version, update time, qos information, lan, wlan interface information of the device.
download link: ftp://ftp2.dlink.com/SECURITY_ADVISEMENTS/DIR-825/REVB/
Vulnerability location: file:  /sbin/httpd  function: do_widget_action

Vulnerability function: images

pin number images

route_table images

mac address,firmware information images

wlan interface information images

and images

You can’t perform that action at this time.