Authentication Bypass Vulnerability in D-Link SharePort Web Access
CVE-2019-16190
9.8CRITICAL
Summary
The SharePort Web Access feature on specific D-Link routers allows unauthorized access due to an authentication bypass flaw. This vulnerability can be exploited via direct requests to sensitive PHP files, compromising the device's security. Users are encouraged to secure their devices by updating to the latest firmware versions provided by D-Link to mitigate potential risks.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved