CVE-2020-15633: D-Link Multiple Routers HNAP GetCAPTCHAsetting Authentication Bypass Vulnerability
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.20B10BETA. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP requests. The issue results from incorrect string matching logic when accessing protected pages. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the router. Was ZDI-CAN-10835.
Other sources
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP requests. The issue results from incorrect string matching logic when accessing protected pages. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the router.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-15633?
The severity of CVE-2020-15633 is high with a CVSS score of 8.8.
Which D-Link routers are affected by CVE-2020-15633?
D-Link DIR-867, DIR-878, and DIR-882 routers with specific firmware versions are affected by CVE-2020-15633.
Is authentication required to exploit CVE-2020-15633?
No, authentication is not required to exploit CVE-2020-15633.
How can an attacker exploit CVE-2020-15633?
An attacker can exploit CVE-2020-15633 by bypassing authentication on affected D-Link routers.
What can I do to protect my D-Link router from CVE-2020-15633?
To protect your D-Link router from CVE-2020-15633, ensure that you have installed the latest firmware update provided by D-Link.