The check_login function in D-Link DNR-326 prior to 2.10 build 03 allows remote malicious users to bypass authentication and log in by setting the username cookie parameter to an arbitrary string.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
d-link dnr-326_firmware |