Description
The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Planex BRL-04R, BRL-04UR, and BRL-04CW routers; and Alpha Networks routers allows remote attackers to bypass authentication and modify settings via an xmlset_roodkcableoj28840ybtide User-Agent HTTP header, as exploited in the wild in October 2013.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Subscriptions
Alphanetworks
Subscribe
Vdsl Asl-55052
Subscribe
Vdsl Asl-56552
Subscribe
Dlink
Subscribe
Di-524up
Subscribe
Di-604\+
Subscribe
Di-604s
Subscribe
Di-604up
Subscribe
Di-624s
Subscribe
Dir-100
Subscribe
Dir-120
Subscribe
Tm-g5240
Subscribe
Planex
Subscribe
Brl-04cw
Subscribe
Brl-04r
Subscribe
Brl-04ur
Subscribe
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2024-09-16T23:50:32.878Z
Reserved: 2013-10-04T00:00:00.000Z
Link: CVE-2013-6026
No data.
Status : Deferred
Published: 2013-10-19T10:36:08.963
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-6026
No data.
OpenCVE Enrichment
No data.
Weaknesses