← Back to CVE List
Vulnerability Intelligence Report

CVE-2017-9542

D-Link DIR-615 Wireless N 300 Router allows authentication bypass via a modified POST request to login.cgi. This issue occurs because it fails to validate the password field. Successful exploitation of this issue allows an attacker to take control of the affected device.

No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:5.07%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
d-link dir-615_firmware all
dlink dir-615 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
5.073%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2017-06-11T00:00:00
Published2017-06-11T23:00:00
Patch Date2017-06-11
Last Updated2024-08-05T17:11:02

LINK COPIED TO CLIPBOARD