ZeroHour

CVE-2017-9100

PoC ×3
CVSS 3.1
8.8 high
EPSS
85%p100
Published
()
Modified
Description

login.cgi on D-Link DIR-600M devices with firmware 3.04 allows remote attackers to bypass authentication by entering more than 20 blank spaces in the password field during an admin login attempt.

Vendors
dlink
Products
dir-600m firmware
Weakness
CWE-287
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.