Lucene search

K
cisa_kevCISACISA-KEV-CVE-2011-4723
HistorySep 08, 2022 - 12:00 a.m.

D-Link DIR-300 Router Cleartext Storage of a Password Vulnerability

2022-09-0800:00:00
CISA
www.cisa.gov
17
d-link
dir-300
router
password
vulnerability
cleartext
storage
sensitive information
attackers

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:C/I:N/A:N

EPSS

0.003

Percentile

69.7%

The D-Link DIR-300 router stores cleartext passwords, which allows context-dependent attackers to obtain sensitive information.

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:C/I:N/A:N

EPSS

0.003

Percentile

69.7%

Related for CISA-KEV-CVE-2011-4723