VYPR

DIR-130

by Dlink

CVEs (2)

  • CVE-2017-3192CriDec 16, 2017
    risk 0.66cvss 9.8epss 0.28

    D-Link DIR-130 firmware version 1.23 and DIR-330 firmware version 1.12 do not sufficiently protect administrator credentials. The tools_admin.asp page discloses the administrator password in base64 encoding in the returned web page. A remote attacker with access to this page…

  • CVE-2017-3191CriDec 16, 2017
    risk 0.66cvss 9.8epss 0.34

    D-Link DIR-130 firmware version 1.23 and DIR-330 firmware version 1.12 are vulnerable to authentication bypass of the remote login page. A remote attacker that can access the remote management login page can manipulate the POST request in such a manner as to access some…