First published: Wed Jun 07 2006(Updated: )
The web server for D-Link Wireless Access-Point (DWL-2100ap) firmware 2.10na and earlier allows remote attackers to obtain sensitive system information via a request to an arbitrary .cfg file, which returns configuration information including passwords.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-link Dwl-2100ap | <=2.10na |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-2901 is a vulnerability in D-Link Wireless Access-Point firmware that allows remote attackers to obtain sensitive configuration information.
CVE-2006-2901 affects D-Link DWL-2100AP access points running firmware version 2.10na and earlier.
Exploitation of CVE-2006-2901 can lead to unauthorized access to sensitive system information, including passwords and configuration settings.
To mitigate CVE-2006-2901, users should update their D-Link DWL-2100AP firmware to a version later than 2.10na.
While CVE-2006-2901 is an older vulnerability, it remains a threat for users who have not updated their affected D-Link access points.