Filtered by vendor Dlink Subscriptions
Filtered by product Dir-412 Firmware Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-17511 1 Dlink 2 Dir-412, Dir-412 Firmware 2024-08-05 7.5 High
There are some web interfaces without authentication requirements on D-Link DIR-412 A1-1.14WW routers. An attacker can get the router's log file via log_get.php, which could be used to discover the intranet network structure.
CVE-2019-17512 1 Dlink 2 Dir-412, Dir-412 Firmware 2024-08-05 9.1 Critical
There are some web interfaces without authentication requirements on D-Link DIR-412 A1-1.14WW routers. An attacker can clear the router's log file via act=clear&logtype=sysact to log_clear.php, which could be used to erase attack traces.