Information Disclosure in D-Link DSP-W215 Devices by D-Link
CVE-2020-13135
6.5MEDIUM
Summary
D-Link DSP-W215 version 1.26b03 devices are susceptible to an information disclosure vulnerability that enables attackers to intercept messages on the local network. This issue can be exploited through various methods, such as deploying a Squid Proxy, allowing unauthorized access to sensitive information transmitted over the network.
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved