First published: Mon May 15 2023(Updated: )
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-2150 routers. Authentication is not required to exploit this vulnerability.
Affected Software | Affected Version | How to fix |
---|---|---|
D-Link DIR-2150 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-23-628 is classified as high due to the potential for authentication bypass.
To fix ZDI-23-628, update the firmware of your D-Link DIR-2150 router to the latest version provided by the manufacturer.
ZDI-23-628 affects all installations of the D-Link DIR-2150 router that have not been updated to a secure firmware version.
No, ZDI-23-628 requires network-adjacent access, meaning an attacker must be on the same network to exploit the vulnerability.
ZDI-23-628 is an authentication bypass vulnerability that allows attackers to access the router without authentication.