An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. The One Touch application discloses sensitive information, such as the hashed admin login password and the Internet provider connection username and cleartext password, in the application’s response body for a /tmp/var/passwd or /tmp/home/wan_stat URI.
Dedicated Forum to help removing adware, malware, spyware, ransomware, trojans, viruses and more!
More Stories
Trump Orders IaaS Providers to Track Foreign Users
Administration Unveils Senior Tech and Acquisition Leaders
As Biden Signs On, Trump Appointees Share Social Media Sign-Offs