Required CVE Record Information
Description
login.cgi on D-Link DIR-600M devices with firmware 3.04 allows remote attackers to bypass authentication by entering more than 20 blank spaces in the password field during an admin login attempt.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- http://touhidshaikh.com/blog/poc/d-link-dir600-auth-bypass/ x_transferred
- exploit-db.com: 42039 exploitx_transferred
- https://www.youtube.com/watch?v=waIJKWCpyNQ x_transferred