CVE-2017-9675: Input Validation
Published Jun 15, 2017
·Updated
On D-Link DIR-605L devices, firmware before 2.08UIBetaB01.bin allows an unauthenticated GET request to trigger a reboot.
Affected Software
2 affected components
Dlink Dir-605l Firmware=2.08b01
Dlink Dir-605l
Event History
Jun 15, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-9675?
CVE-2017-9675 has been classified as a high severity vulnerability due to its potential to allow an attacker to reboot the device without authentication.
2
How do I fix CVE-2017-9675?
To fix CVE-2017-9675, update the D-Link DIR-605L firmware to version 2.08UIBetaB01.bin or later.
3
What types of devices are affected by CVE-2017-9675?
CVE-2017-9675 affects D-Link DIR-605L devices running firmware versions before 2.08UIBetaB01.bin.
4
Can CVE-2017-9675 be exploited remotely?
Yes, CVE-2017-9675 can be exploited remotely via unauthenticated GET requests.
5
What impact does CVE-2017-9675 have on device functionality?
The exploitation of CVE-2017-9675 can lead to an unexpected reboot of the device, disrupting its operation.