High severity8.8NVD Advisory· Published May 3, 2024· Updated Jun 17, 2026
CVE-2023-32168
CVE-2023-32168
Description
D-Link D-View showUser Improper Authorization Privilege Escalation Vulnerability. This vulnerability allows remote attackers to escalate privileges on affected installations of D-Link D-View. Authentication is required to exploit this vulnerability.
The specific flaw exists within the showUser method. The issue results from the lack of proper authorization before accessing a privileged endpoint. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the user. . Was ZDI-CAN-19534.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- supportannouncement.us.dlink.com/announcement/publication.aspxnvdVendor Advisory
- www.zerodayinitiative.com/advisories/ZDI-23-719/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.