CVE-2023-53896 - D-Link DAP-1325 Hardware A1 Unauthenticated Configuration Download

CVE ID : CVE-2023-53896
Published : Dec. 16, 2025, 5:06 p.m. | 48 minutes ago
Description : D-Link DAP-1325 firmware version 1.01 contains a broken access control vulnerability that allows unauthenticated attackers to download device configuration settings without authentication. Attackers can exploit the /cgi-bin/ExportSettings.sh endpoint to retrieve sensitive configuration information by directly accessing the export settings script.
Severity: 8.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...

from Latest Vulnerabilities https://ift.tt/WvHFKNX

Post a Comment

Previous Post Next Post