CVE-2015-2048: CSRF
Cross-site request forgery (CSRF) vulnerability in D-Link DCS-931L with firmware 1.04 and earlier allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2048?
CVE-2015-2048 is classified as a medium severity vulnerability due to its CSRF nature allowing potential authentication hijacking.
How do I fix CVE-2015-2048?
To mitigate CVE-2015-2048, it is recommended to update the D-Link DCS-931L firmware to version 1.05 or later.
Which versions of D-Link DCS-931L are affected by CVE-2015-2048?
D-Link DCS-931L devices running firmware version 1.04 or earlier are vulnerable to CVE-2015-2048.
What type of attack does CVE-2015-2048 facilitate?
CVE-2015-2048 facilitates a Cross-Site Request Forgery (CSRF) attack that can allow remote attackers to hijack user authentication.
Are there any known exploits for CVE-2015-2048?
As of now, there are no specific public exploits reported for CVE-2015-2048, but the vulnerability remains a security risk.