D-Link – G integrated Access Device4 Information Disclosure & Authorization Bypass.
*Information Disclosure –
file contains a URL with private IP at line 15 "login.asp" A. The
window.location.href = http://192.168.1.1/setupWizard.asp" http://192.168.1.1/setupWizard.asp" ;
"admin" – contains default username value "login.asp" B. While accessing the web interface, the login form at

*Authorization Bypass –
URL by "setupWizard.asp' while it blocks direct access to – the web interface does not properly validate user identity variables values located at the client side, it is available to access it without a "login_glag" and "login_status" checking browser and to read the admin user credentials for the web interface.



Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 29 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: INCD

Published:

Updated: 2025-04-29T13:43:47.629Z

Reserved: 2022-07-26T00:00:00.000Z

Link: CVE-2022-36785

cve-icon Vulnrichment

Updated: 2024-08-03T10:14:28.416Z

cve-icon NVD

Status : Modified

Published: 2022-11-17T23:15:16.810

Modified: 2025-04-29T14:15:20.720

Link: CVE-2022-36785

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.