CVE-2013-1601: Infoleak
An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LINK An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05TESCO, TESCO DCS-2102 1.05TESCO, DCS-7510 1.00, DCS-7410 1.00, DCS-6410 1.00, DCS-5635 1.01, DCS-5605 1.01, DCS-5230L 1.02, DCS-5230 1.02, DCS-3430 1.02, DCS-3411 1.02, DCS-3410 1.02, DCS-2121 1.06FR, DCS-2121 1.06, DCS-2121 1.05RU, DCS-2102 1.06FR, DCS-2102 1.06, DCS-2102 1.05RU, DCS-1130L 1.04, DCS-1130 1.04US, DCS-1130 1.03, DCS-1100L 1.04, DCS-1100 1.04US, and DCS-1100 1.03, which could let a malicious user obtain sensitive information. which could let a malicious user obtain sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2013-1601?
CVE-2013-1601 is an Information Disclosure vulnerability in the D-LINK lums.cgi script.
How does CVE-2013-1601 vulnerability occur?
CVE-2013-1601 occurs due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LINK devices.
What is the severity of CVE-2013-1601?
CVE-2013-1601 has a severity level of 5.3 (Medium).
Which software is affected by CVE-2013-1601?
D-LINK devices with firmware versions 1.02 and certain models are affected by CVE-2013-1601. Please refer to the CVE details for a complete list.
Are there any references for CVE-2013-1601?
Yes, here are some references for CVE-2013-1601: - [http://www.securityfocus.com/bid/59570](http://www.securityfocus.com/bid/59570) - [https://exchange.xforce.ibmcloud.com/vulnerabilities/83939](https://exchange.xforce.ibmcloud.com/vulnerabilities/83939) - [https://packetstormsecurity.com/files/cve/CVE-2013-1601](https://packetstormsecurity.com/files/cve/CVE-2013-1601)