First published: Mon Jan 30 2017(Updated: )
An issue was discovered on the D-Link DWR-932B router. WPS PIN generation is based on srand(time(0)) seeding.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-Link DWR-932B Firmware | =02.02eu-revb | |
D-Link DWR-932B | ||
All of | ||
=02.02eu-revb | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-10180 has a medium severity rating due to its potential to lead to unauthorized access.
To fix CVE-2016-10180, upgrade the D-Link DWR-932B firmware to a version later than 02.02eu-revb.
CVE-2016-10180 affects D-Link DWR-932B routers running firmware version 02.02eu-revb.
CVE-2016-10180 is caused by weak WPS PIN generation due to predictable random number seeding using srand(time(0)).
Yes, CVE-2016-10180 can potentially be exploited remotely by an attacker.