Files
CVEs-PoC/2019/CVE-2019-19225.md
2025-09-29 21:09:30 +02:00

839 B

CVE-2019-19225

Description

A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to change DNS servers without being authenticated on the admin interface by submitting a crafted Forms/dns_1 POST request.

POC

Reference

Github

No PoCs found on GitHub currently.