CVE-2017-5874: CSRF
CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01beta20170306. This can be used to bypass authentication and insert XSS sequences or possibly have unspecified other impact.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5874?
CVE-2017-5874 has been classified with a medium severity due to its ability to bypass authentication.
How do I fix CVE-2017-5874?
To mitigate CVE-2017-5874, users should update D-Link DIR-600M devices to firmware version v3.05ENB01_beta_20170306 or later.
What kind of attack can be executed with CVE-2017-5874?
CVE-2017-5874 allows attackers to execute Cross-Site Request Forgery (CSRF) attacks, potentially leading to XSS insertion.
Which D-Link devices are affected by CVE-2017-5874?
CVE-2017-5874 specifically affects D-Link DIR-600M Rev. Cx devices running firmware versions prior to v3.05ENB01_beta_20170306.
Can CVE-2017-5874 affect my network security?
Yes, CVE-2017-5874 poses a risk to network security as it can be exploited to gain unauthorized access and execute malicious commands.