An issue was discovered on D-Link DCS-2530L before 1.06.01 Hotfix and DCS-2670L through 2.02 devices. The unauthenticated /config/getuser endpoint allows for remote administrator password disclosure.
Metrics
Affected Vendors & Products
References
History
Wed, 06 Aug 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dlink dcs-4603
Dlink dcs-4603 Firmware Dlink dcs-4622 Dlink dcs-4622 Firmware Dlink dcs-4701e Dlink dcs-4701e Firmware Dlink dcs-4703e Dlink dcs-4703e Firmware Dlink dcs-4705e Dlink dcs-4705e Firmware Dlink dcs-4802e Dlink dcs-4802e Firmware Dlink dcs-p703 Dlink dcs-p703 Firmware |
|
CPEs | cpe:2.3:h:dlink:dcs-4603:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:dcs-4622:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:dcs-4701e:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:dcs-4703e:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:dcs-4705e:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:dcs-4802e:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:dcs-p703:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:dcs-4603_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:dlink:dcs-4622_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:dlink:dcs-4701e_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:dlink:dcs-4703e_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:dlink:dcs-4705e_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:dlink:dcs-4802e_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:dlink:dcs-p703_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Dlink dcs-4603
Dlink dcs-4603 Firmware Dlink dcs-4622 Dlink dcs-4622 Firmware Dlink dcs-4701e Dlink dcs-4701e Firmware Dlink dcs-4703e Dlink dcs-4703e Firmware Dlink dcs-4705e Dlink dcs-4705e Firmware Dlink dcs-4802e Dlink dcs-4802e Firmware Dlink dcs-p703 Dlink dcs-p703 Firmware |
Tue, 05 Aug 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
ssvc
|
Tue, 05 Aug 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|

Status: PUBLISHED
Assigner: mitre
Published: 2020-09-02T15:33:18.000Z
Updated: 2025-08-05T22:20:24.059Z
Reserved: 2020-09-02T00:00:00.000Z
Link: CVE-2020-25078

Updated: 2024-08-04T15:26:09.282Z

Status : Analyzed
Published: 2020-09-02T16:15:12.627
Modified: 2025-08-06T20:42:41.927
Link: CVE-2020-25078

No data.