This advisory details multiple vulnerabilities in the D-Link DSL-320B router, including authentication bypass, information disclosure, stored XSS, and insecure credential handling. It provides specific endpoints and payloads for exploitation but lacks functional exploit code.
Classification
Writeup 95%
Attack Type
Auth Bypass | Info Leak | Xss
Target:
D-Link DSL-320B Firmware EU_DSL-320B v1.23
No auth needed
Prerequisites:
Network access to the target device · Knowledge of the target IP address