Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 26 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink
Dlink dsl-124 Dlink dsl-124 Firmware |
|
| CPEs | cpe:2.3:h:dlink:dsl-124:r1:*:*:*:*:*:*:* cpe:2.3:o:dlink:dsl-124_firmware:1.00:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dlink
Dlink dsl-124 Dlink dsl-124 Firmware |
Tue, 23 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
D-link
D-link dsl-124 |
|
| Vendors & Products |
D-link
D-link dsl-124 |
Mon, 22 Dec 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 22 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | D-Link DSL-124 ME_1.00 contains a configuration file disclosure vulnerability that allows unauthenticated attackers to retrieve router settings through a POST request. Attackers can send a specific POST request to the router's configuration endpoint to download a complete backup file containing sensitive network credentials and system configurations. | |
| Title | D-Link DSL-124 ME_1.00 Backup Configuration File Disclosure via Unauthenticated Request | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-22T22:04:36.405Z
Reserved: 2025-12-20T16:31:20.899Z
Link: CVE-2023-53974
Updated: 2025-12-22T21:58:28.175Z
Status : Analyzed
Published: 2025-12-22T22:16:02.647
Modified: 2025-12-26T16:14:34.590
Link: CVE-2023-53974
No data.
OpenCVE Enrichment
Updated: 2025-12-23T22:40:11Z