CVE-2014-7857
D-Link Bypass / Buffer Overflow
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
D-Link DNS-320L firmware before 1.04b12, DNS-327L before 1.03b04 Build0119, DNR-326 1.40b03, DNS-320B 1.02b01, DNS-345 1.03b06, DNS-325 1.05b03, and DNS-322L 2.00b07 allow remote attackers to bypass authentication and log in with administrator permissions by passing the cgi_set_wto command in the cmd parameter, and setting the spawned session's cookie to username=admin.
DNS-320L firmware anterior a la versión 1.04b12, DNS-327L anterior a la versión 1.03b04 Build0119, DNR-326 versión 1.40b03, DNS-320B versión 1.02b01, DNS-345 versión 1.03b06, DNS-325 versión 1.05b03, y DNS-322L versión 2.00b07 de D-Link, permite a los atacantes remotos omitir la autenticación e iniciar sesión con los permisos de administrador omitiendo el comando cgi_set_wto en el parámetro cmd y ajustando la cookie de sesión creada en username=admin.
SEARCH-LAB performed an independent security assessment on four different D-Link devices. The assessment has identified altogether 53 unique vulnerabilities in the latest firmware (dated 30-07-2014). Several vulnerabilities can be abused by a remote attacker to execute arbitrary code and gain full control over the devices.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2014-10-03 CVE Reserved
- 2015-05-28 CVE Published
- 2024-08-06 CVE Updated
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/132075/D-Link-Bypass-Buffer-Overflow.html | Third Party Advisory |
|
http://seclists.org/fulldisclosure/2015/May/125 | Mailing List |
|
http://www.search-lab.hu/media/D-Link_Security_advisory_3_0_public.pdf | Technical Description | |
http://www.securityfocus.com/archive/1/535626/100/200/threaded | Mailing List | |
http://www.securityfocus.com/bid/74880 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
D-link Search vendor "D-link" | Dns-322l Firmware Search vendor "D-link" for product "Dns-322l Firmware" | <= 2.00b07 Search vendor "D-link" for product "Dns-322l Firmware" and version " <= 2.00b07" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dns-322l Search vendor "Dlink" for product "Dns-322l" | - | - |
Safe
|
D-link Search vendor "D-link" | Dns-325 Firmware Search vendor "D-link" for product "Dns-325 Firmware" | <= 1.05b03 Search vendor "D-link" for product "Dns-325 Firmware" and version " <= 1.05b03" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dns-325 Search vendor "Dlink" for product "Dns-325" | - | - |
Safe
|
D-link Search vendor "D-link" | Dns-345 Firmware Search vendor "D-link" for product "Dns-345 Firmware" | <= 1.03b06 Search vendor "D-link" for product "Dns-345 Firmware" and version " <= 1.03b06" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dns-345 Search vendor "Dlink" for product "Dns-345" | - | - |
Safe
|
D-link Search vendor "D-link" | Dns-320b Firmware Search vendor "D-link" for product "Dns-320b Firmware" | <= 1.02b01 Search vendor "D-link" for product "Dns-320b Firmware" and version " <= 1.02b01" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dns-320b Search vendor "Dlink" for product "Dns-320b" | - | - |
Safe
|
D-link Search vendor "D-link" | Dnr-326 Firmware Search vendor "D-link" for product "Dnr-326 Firmware" | <= 1.40b03 Search vendor "D-link" for product "Dnr-326 Firmware" and version " <= 1.40b03" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dnr-326 Search vendor "Dlink" for product "Dnr-326" | - | - |
Safe
|
D-link Search vendor "D-link" | Dns-327l Firmware Search vendor "D-link" for product "Dns-327l Firmware" | <= 1.02 Search vendor "D-link" for product "Dns-327l Firmware" and version " <= 1.02" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dns-327l Search vendor "Dlink" for product "Dns-327l" | - | - |
Safe
|
D-link Search vendor "D-link" | Dns-320l Firmware Search vendor "D-link" for product "Dns-320l Firmware" | <= 1.03b04 Search vendor "D-link" for product "Dns-320l Firmware" and version " <= 1.03b04" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dns-320l Search vendor "Dlink" for product "Dns-320l" | - | - |
Safe
|