PT-2015-3329 · D Link · D-Link Dvg-N5402Sp
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
D-Link DVG-N5402SP with firmware W1000CN-00
D-Link DVG-N5402SP with firmware W1000CN-03
D-Link DVG-N5402SP with firmware W2000EN-00
Description
The issue is related to the use of default passwords for the root and tw accounts in the D-Link DVG-N5402SP router. The default password for the root account is
root and for the tw account is tw. This makes it easier for remote attackers to obtain administrative access.Recommendations
For D-Link DVG-N5402SP with firmware W1000CN-00, change the default passwords for the root and tw accounts to secure ones.
For D-Link DVG-N5402SP with firmware W1000CN-03, change the default passwords for the root and tw accounts to secure ones.
For D-Link DVG-N5402SP with firmware W2000EN-00, change the default passwords for the root and tw accounts to secure ones.
Exploit
Correção
Using Hardcoded Credentials
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
D-Link Dvg-N5402Sp