Directory traversal vulnerability in D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 allows remote attackers to read sensitive information via a .. (dot dot) in the errorpage parameter.
2017-04-24T18:59:00.163
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | d-link | dvg-n5402sp_firmware | w1000cn-00 | Yes |
Operating System | d-link | dvg-n5402sp_firmware | w1000cn-03 | Yes |
Operating System | d-link | dvg-n5402sp_firmware | w2000en-00 | Yes |
Hardware | dlink | dvg-n5402sp | - | No |