CVE-2006-2901
Last modified
CVE-2006-2901 is a vulnerability of currently unknown severity. The web server for D-Link Wireless Access-Point (DWL-2100ap) firmware 2.10na and earlier allows remote attackers to obtain sensitive system information via a request to an arbitrary .cfg file, which returns configuration information including passwords.. EPSS estimates a 9.05% chance of exploitation in the next 30 days.
Description
The web server for D-Link Wireless Access-Point (DWL-2100ap) firmware 2.10na and earlier allows remote attackers to obtain sensitive system information via a request to an arbitrary .cfg file, which returns configuration information including passwords.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| D-Link | Dwl-2100ap | <= 2.10na |
References
- http://secunia.com/advisories/20474Exploit, Vendor Advisory
- http://www.intruders.com.br/adv0206en.htmlPatch, Vendor Advisory
- http://secunia.com/advisories/20474Exploit, Vendor Advisory
- http://www.intruders.com.br/adv0206en.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-2901?
How severe is CVE-2006-2901?
How do I fix CVE-2006-2901?
Are you affected by CVE-2006-2901?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
