dispositivi D-Link DIR-601 A1 1.02NA non richiedono la vecchia password per una modifica della password, che si verifica in chiaro. |
https://advancedpersistentsecurity.net/cve-2018-10641/ https://gist.github.com/jocephus/806ff4679cf54af130d69777a551f819 https://www.peerlyst.com/posts/vulnerability-disclosure-insecure-authentication-practices-in-d-link-router-cve-2018-10641-joe-gray https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10641 |
Vulnerabilità: CVE-2018-10641
