Loading HuntDB...

GHSA-vpjj-qrvj-m2j4

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

D-Link DIR-1950 up to v1.11B03 does not validate SSL certificates when requesting the latest firmware version and downloading URL. This can allow attackers to downgrade the firmware version or change the downloading URL via a man-in-the-middle attack.

Related CVEs

Key Information

GHSA ID
GHSA-vpjj-qrvj-m2j4
Published
June 27, 2024 9:32 PM
Last Modified
August 1, 2024 3:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.