First published: Thu Apr 12 2018(Updated: )
Cross-site request forgery (CSRF) vulnerability in D-Link DIR-815 devices with firmware before 2.07.B01 allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-815 Firmware | <2.07.b01 | |
Dlink Dir-815 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0151 is a cross-site request forgery (CSRF) vulnerability in D-Link DIR-815 devices.
CVE-2015-0151 allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.
CVE-2015-0151 has a severity rating of 8.8 (high).
D-Link DIR-815 devices with firmware before 2.07.B01 are affected by CVE-2015-0151.
To fix CVE-2015-0151, update your D-Link DIR-815 device firmware to version 2.07.B01 or newer.