An issue was discovered on D-Link DAP-1650 devices through v1.03b07 before 1.04B02_J65H Hot Fix. Attackers can bypass authentication via forceful browsing.
References
Link | Resource |
---|---|
ftp://ftp2.dlink.com/SECURITY_ADVISEMENTS/DAP-1650/REVA/DAP-1650_REVA_RELEASE_NOTES_v1.04B02_J65H.pdf | Broken Link |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-12-30 12:15
Updated : 2021-07-21 04:39
NVD link : CVE-2019-12768
Mitre link : CVE-2019-12768
JSON object : View
CWE
CWE-425
Direct Request ('Forced Browsing')
Products Affected
dlink
- dap-1650_firmware
- dap-1650