First published: Sat Aug 31 2002(Updated: )
The remote administration capability for the D-Link DI-804 router 4.68 allows remote attackers to bypass authentication and release DHCP addresses or obtain sensitive information via a direct web request to the pages (1) release.htm, (2) Device Status, or (3) Device Information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-Link DI-804 | =4.68 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1069 is considered a high severity vulnerability due to its potential for unauthorized access to sensitive information.
To mitigate CVE-2002-1069, it is recommended to disable remote administration on the D-Link DI-804 router or upgrade to a firmware version that addresses this vulnerability.
An attacker exploiting CVE-2002-1069 can release DHCP addresses or access sensitive device information, posing a risk to network security.
CVE-2002-1069 affects the D-Link DI-804 router with firmware version 4.68.
As a temporary workaround for CVE-2002-1069, restricting access to the router's web interface through firewall rules or VPN connections can enhance security.