HTTP: D-Link Products Multiple Information Disclosure
This signature detects attempts to exploit a known vulnerability against D-Link. A successful attack can lead to unauthorized information disclosure.
Extended Description
The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP interface.
References
BugTraq: 67651
CVE: CVE-2016-6563
URL: http://securityadvisories.dlink.com/security/publication.aspx?name=sap10029 http://www.devttys0.com/2014/05/hacking-the-d-link-dsp-w215-smart-plug/ https://raw.githubusercontent.com/pedrib/PoC/master/advisories/dlink-hnap-login.txt http://seclists.org/fulldisclosure/2016/Nov/38 http://securityadvisories.dlink.com/security/publication.aspx?name=SAP10051 http://www.devttys0.com/2015/04/hacking-the-d-link-dir-890l/ http://securityadvisories.dlink.com/security/publication.aspx?name=SAP10029
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
10.0