CVE-2005-1827

Severity CVSS v4.0:
Pending analysis
Type:
CWE-425 Direct Request ('Forced Browsing')
Publication date:
26/05/2005
Last modified:
03/04/2025

Description

D-Link DSL-504T allows remote attackers to bypass authentication and gain privileges, such as upgrade firmware, restart the router or restore a saved configuration, via a direct request to firmwarecfg.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dlink:dsl-504t_firmware:1.00b01t16.eu.20040217:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dsl-504t:-:*:*:*:*:*:*:*