CVE-2006-2901
MEDIUM 5.0EPSS 9.2%
The web server for D-Link Wireless Access-Point (DWL-2100ap) firmware 2.10na and earlier allows remote attackers to obtain sensitive system information via a request to an arbitrary .cfg file, which returns configuration information including passwords.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N - EPSS
- 9.21% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2006-06-07
- Updated
- 2024-08-07