Broken Access Control in D-Link DAP-1325 Wireless Range Extender

Post Reply
Shane1145
Posts: 1836
Joined: Wed Sep 25, 2024 2:31 pm

Broken Access Control in D-Link DAP-1325 Wireless Range Extender

Post by Shane1145 »

The D-Link DAP-1325 contains a vulnerability that allows attackers to exploit a broken access control mechanism. By accessing the /cgi-bin/ExportSettings.sh endpoint, unauthorized users can download sensitive device configuration settings without requiring any authentication. This exposes critical information that could undermine network security, making it vital for users to secure their devices against potential exploits.

https://securityvulnerability.io/vulner ... 2023-53896
Post Reply