Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.107242
Category:Web application abuses
Title:D-Link DIR-850L Rev.A1 < 1.20 / Rev.B1 < 2.20 XSS / Backdoor / Code Execution Vulnerabilities
Summary:D-Link DIR-850L devices suffer from cross-site scripting (XSS),; access bypass, backdoor, bruteforcing, information disclosure, remote code execution (RCE), and; denial of service (DoS) vulnerabilities.
Description:Summary:
D-Link DIR-850L devices suffer from cross-site scripting (XSS),
access bypass, backdoor, bruteforcing, information disclosure, remote code execution (RCE), and
denial of service (DoS) vulnerabilities.

Vulnerability Impact:
Remote attacker can execute XSS attacks, obtain the admin password,
forge firmware and to execute remote commands.

Affected Software/OS:
D-Link DIR-850L Rev A1 before firmware 1.20 and B1 before 2.20.

Solution:
Upgrade the D-Link DIR-850L firmware to version 1.20 for Rev. A
and/or version 2.20 for Rev. B routers.

Check the referenced vendor link for more information on how to apply the firmware.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-14413
https://pierrekim.github.io/blog/2017-09-08-dlink-850l-mydlink-cloud-0days-vulnerabilities.html
Common Vulnerability Exposure (CVE) ID: CVE-2017-14414
Common Vulnerability Exposure (CVE) ID: CVE-2017-14415
Common Vulnerability Exposure (CVE) ID: CVE-2017-14416
Common Vulnerability Exposure (CVE) ID: CVE-2017-14417
Common Vulnerability Exposure (CVE) ID: CVE-2017-14418
Common Vulnerability Exposure (CVE) ID: CVE-2017-14419
Common Vulnerability Exposure (CVE) ID: CVE-2017-14420
Common Vulnerability Exposure (CVE) ID: CVE-2017-14421
Common Vulnerability Exposure (CVE) ID: CVE-2017-14422
Common Vulnerability Exposure (CVE) ID: CVE-2017-14423
Common Vulnerability Exposure (CVE) ID: CVE-2017-14424
Common Vulnerability Exposure (CVE) ID: CVE-2017-14425
Common Vulnerability Exposure (CVE) ID: CVE-2017-14426
Common Vulnerability Exposure (CVE) ID: CVE-2017-14427
Common Vulnerability Exposure (CVE) ID: CVE-2017-14428
Common Vulnerability Exposure (CVE) ID: CVE-2017-14429
Common Vulnerability Exposure (CVE) ID: CVE-2017-14430
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.