VYPR

Dir 825 Rev.b Firmware

by Dlink

CVEs (3)

  • CVE-2019-9123CriFeb 25, 2019
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. The "user" account has a blank password.

  • CVE-2019-9122HigFeb 25, 2019
    risk 0.59cvss 8.8epss 0.24

    An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the ntp_server parameter in an ntp_sync.cgi POST request.

  • CVE-2019-9126HigFeb 25, 2019
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is an information disclosure vulnerability via requests for the router_info.xml document. This will reveal the PIN code, MAC address, routing table, firmware version, update time, QOS information, LAN…