CVE-2023-53974 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

D-Link DSL-124 ME_1.00 contains a configuration file disclosure vulnerability that allows unauthenticated attackers to retrieve router settings through a POST r…
High CVSS: 8.8

CVE-2023-53974

D-Link DSL-124 ME_1.00 contains a configuration file disclosure vulnerability that allows unauthenticated attackers to retrieve router settings through a POST request. Attackers can send a specific POST request to the router's configuration endpoint to download a complete backup file containing sensitive network credentials and system configurations.
Vendor
Dlink
Product
Dsl-124 Firmware
CWE
CWE-306
Yayın Tarihi
2025-12-22 22:16:02
Güncelleme
2025-12-26 16:14:34
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar