1 results (0.002 seconds)

CVSS: 5.9EPSS: 0%CPEs: 2EXPL: 3

An authentication brute-force protection mechanism bypass in telnetd in D-Link Router model DIR-842 firmware version 3.0.2 allows a remote attacker to circumvent the anti-brute-force cool-down delay period via a timing-based side-channel attack Una omisión del mecanismo de protección de autenticación de fuerza bruta en telnetd en el modelo de D-Link Router versiones de firmware 3.0.2, permite a un atacante remoto omitir el período de retardo anti-brute-force cool-down por medio de un ataque de canal lateral basado en sincronización • https://github.com/mavlevin/D-Link-CVE-2021-27342-exploit https://blog.whtaguy.com/2021/05/d-link-router-cve-2021-27342.html https://github.com/guywhataguy/D-Link-CVE-2021-27342-exploit/blob/main/dlink-telnet-exploit-CVE-2021-27342.py https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10225 • CWE-203: Observable Discrepancy •