A DoS attack in the web application of D-Link DIR-X1860 before v1.10WWB09_Beta allows a remote unauthenticated attacker to reboot the router via sending a specially crafted URL to an authenticated victim. The authenticated victim need to visit this URL, for the router to reboot.
The product does not release or incorrectly releases a resource before it is made available for re-use.
Link | Tags |
---|---|
http://d-link.com | broken link |
https://www.dlink.com/en/security-bulletin/ | vendor advisory |
http://dir-x1860.com | url repurposed broken link |
https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10283 | patch technical description vendor advisory |