D-Link DIR-600 Rev Bx devices with v2.x firmware allow remote malicious users to read passwords via a model/__show_info.php?REQUIRE_FILE= absolute path traversal attack, as demonstrated by discovering the admin password.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dlink dir-600_b1_firmware 2.01 |