devolo dLAN 550 duo+ 3.1.0-1 Starter...

- AV AC AU C I A
发布: 2019-02-05
修订: 2025-04-13

devolo dLAN 550 duo+ version 3.1.0-1 allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. The devolo web application uses predictable URL/form actions in a repeatable way. This can be exploited to perform certain actions with administrative privileges if a logged-in user visits a malicious web site.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息