CVE-2017-14417: Critical severity dlink dir-850l firmware vulnerability
registersend.php on D-Link DIR-850L REV. B (with firmware through FW208WWb02) devices does not require authentication, which can result in unintended enrollment in mydlink Cloud Services.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-14417?
CVE-2017-14417 has been classified as a high severity vulnerability due to the lack of authentication that allows unintended access to mydlink Cloud Services.
How do I fix CVE-2017-14417?
To fix CVE-2017-14417, update the D-Link DIR-850L firmware to a version that exceeds FW208WWb02, if available.
What devices are affected by CVE-2017-14417?
CVE-2017-14417 affects D-Link DIR-850L Rev. B devices running firmware versions up to FW208WWb02.
Can CVE-2017-14417 be exploited remotely?
Yes, CVE-2017-14417 can be exploited remotely without authentication, which poses a significant security risk.
What are the implications of CVE-2017-14417?
The implications of CVE-2017-14417 include potential unauthorized access to mydlink Cloud Services and the ability to manipulate device settings.