Critical severity9.8NVD Advisory· Published Aug 18, 2017· Updated May 13, 2026
CVE-2017-12943
CVE-2017-12943
Description
D-Link DIR-600 Rev Bx devices with v2.x firmware allow remote attackers to read passwords via a model/__show_info.php?REQUIRE_FILE= absolute path traversal attack, as demonstrated by discovering the admin password.
Affected products
1- cpe:2.3:o:dlink:dir-600_b1_firmware:2.01:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.youtube.com/watchnvdExploitThird Party Advisory
- jithindkurup.tumblr.com/post/165218785974/d-link-dir-600-authentication-bypass-absolutenvdThird Party Advisory
- www.exploit-db.com/exploits/42581/nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.