A vulnerability in the D-Link DIR-859 router with firmware version A3 1.05 and earlier permits unauthorized individuals to bypass the authentication. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page.
2025-02-18T15:15:16.677
2025-05-21T13:08:12.557
Analyzed
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dlink | dir-859_a3_firmware | < 1.05 | Yes |
Hardware | dlink | dir-859_a3 | - | No |