Vulnerability Description
D-Link DIR-815 devices with firmware before 2.07.B01 allow remote attackers to obtain sensitive information by leveraging cleartext storage of the administrative password.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dlink | Dir-815 Firmware | < 2.07.b01 |
| Dlink | Dir-815 | - |
Related Weaknesses (CWE)
References
- ftp://ftp2.dlink.com/SECURITY_ADVISEMENTS/DIR-815/REVB/DIR-815_REVB_FIRMWARE_PATRelease NotesVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/110585Third Party AdvisoryVDB Entry
- ftp://ftp2.dlink.com/SECURITY_ADVISEMENTS/DIR-815/REVB/DIR-815_REVB_FIRMWARE_PATRelease NotesVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/110585Third Party AdvisoryVDB Entry
FAQ
What is CVE-2015-0152?
CVE-2015-0152 is a vulnerability with a CVSS score of 9.8 (CRITICAL). D-Link DIR-815 devices with firmware before 2.07.B01 allow remote attackers to obtain sensitive information by leveraging cleartext storage of the administrative password.
How severe is CVE-2015-0152?
CVE-2015-0152 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2015-0152?
Check the references section above for vendor advisories and patch information. Affected products include: Dlink Dir-815 Firmware, Dlink Dir-815.