PoC Index

CVE-2017-5633

HIGH 8.5EPSS 4.0%

Multiple cross-site request forgery (CSRF) vulnerabilities on the D-Link DI-524 Wireless Router with firmware 9.01 allow remote attackers to (1) change the admin password, (2) reboot the device, or (3) possibly have unspecified other impact via crafted requests to CGI programs.

CVSS v3.0
8.0 HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CVSS v2.0
8.5 HIGHAV:N/AC:M/Au:S/C:C/I:C/A:C
EPSS
3.96% chance of exploitation in the next 30 days, 90th percentile
Published
2017-03-06
Updated
2024-08-05

Proof-of-concept exploits (2)

ExploitDB entries (1)

References

Related