Authentication Bypass Vulnerability in D-Link DIR-620 Routers
CVE-2018-6213

9.8CRITICAL

Key Information:

Vendor
D-link
Vendor
CVE Published:
20 June 2018

Summary

A critical security flaw exists in D-Link DIR-620 routers, where a hardcoded password for the admin account grants unauthorized access. This vulnerability affects specific firmware versions and compromises the security of the router, allowing attackers to control network settings, access sensitive data, and potentially launch further attacks. Users are advised to update their firmware and implement security best practices to mitigate the risk.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.