Lucene search

K
nvd[email protected]NVD:CVE-2013-2271
HistoryNov 19, 2013 - 4:47 a.m.

CVE-2013-2271

2013-11-1904:47:13
CWE-264
web.nvd.nist.gov
2

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.029

Percentile

91.0%

The D-Link DSL-2740B Gateway with firmware EU_1.0, when an active administrator session exists, allows remote attackers to bypass authentication and gain administrator access via a request to login.cgi.

Affected configurations

Nvd
Node
dlinkdsl-2740b_firmwareMatch-
AND
dlinkdsl-2740bMatch-
VendorProductVersionCPE
dlinkdsl-2740b_firmware-cpe:2.3:o:dlink:dsl-2740b_firmware:-:*:*:*:*:*:*:*
dlinkdsl-2740b-cpe:2.3:h:dlink:dsl-2740b:-:*:*:*:*:*:*:*

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.029

Percentile

91.0%