ZDI-CAN-19529: ZDI-23-718: D-Link D-View uploadMib Directory Traversal Arbitrary File Creation or Deletion Vulnerability
This vulnerability allows remote attackers to create and delete arbitrary files on affected installations of D-Link D-View. Authentication is required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-19529?
The severity of ZDI-CAN-19529 is high, as it allows remote attackers to create and delete arbitrary files.
How do I fix ZDI-CAN-19529?
To fix ZDI-CAN-19529, ensure your D-Link D-View installation is updated with the latest security patches provided by the vendor.
What are the potential impacts of ZDI-CAN-19529?
The potential impacts of ZDI-CAN-19529 include unauthorized file manipulation, leading to data loss or breach of confidentiality.
Who is affected by ZDI-CAN-19529?
Users of D-Link D-View software who have not applied the necessary security updates may be affected by ZDI-CAN-19529.
Does ZDI-CAN-19529 require authentication to exploit?
Yes, ZDI-CAN-19529 requires authentication, meaning an attacker must have valid credentials to exploit the vulnerability.