CVE-2019-1010155

CRITICAL

D-Link DSL-2750U 1.11 - Auth Bypass

Title source: llm
STIX 2.1

Description

D-Link DSL-2750U 1.11 is affected by: Authentication Bypass. The impact is: denial of service and information leakage. The component is: login. NOTE: Third parties dispute this issues as not being a vulnerability because although the wizard is accessible without authentication, it can't actually configure anything. Thus, there is no denial of service or information leakage

References (4)

Core 4
Core References
Exploit, Third Party Advisory x_refsource_misc
https://youtu.be/BQQbp2vn_wY
Broken Link, Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/109351
Third Party Advisory x_refsource_misc
https://cxsecurity.com/issue/WLB-2018080199
Exploit, Third Party Advisory x_refsource_misc
https://www.youtube.com/watch?v=7sk6agpcA_s

Scores

CVSS v3 9.1
EPSS 0.0058
EPSS Percentile 69.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

Details

Status published
Products (1)
dlink/dsl-2750u_firmware 1.11
Published Jul 23, 2019
Tracked Since Feb 18, 2026