Vulnerabilities > D Link > DSL G624T > Medium

DATE CVE VULNERABILITY TITLE RISK
2006-10-26 CVE-2006-5538 Remote Security vulnerability in D-Link Dsl-G624T 3.00B01T01.Yac.20060616
D-Link DSL-G624T firmware 3.00B01T01.YA-C.20060616 allows remote attackers to list contents of the cgi-bin directory via unspecified vectors, probably a direct request.
network
low complexity
d-link
5.0
2006-10-26 CVE-2006-5537 Cross-Site Scripting vulnerability in D-Link Dsl-G624T Firmware3.00B01T01.Yac.20060616
Multiple cross-site scripting (XSS) vulnerabilities in cgi-bin/webcm in D-Link DSL-G624T firmware 3.00B01T01.YA-C.20060616 allow remote attackers to inject arbitrary web script or HTML via the (1) upnp:settings/state or (2) upnp:settings/connection parameters.
network
d-link
4.3
2006-10-26 CVE-2006-5536 Information Disclosure vulnerability in D-Link Dsl-G624T Firmware3.00B01T01.Yac.20060616
Directory traversal vulnerability in cgi-bin/webcm in D-Link DSL-G624T firmware 3.00B01T01.YA-C.20060616 allows remote attackers to read arbitrary files via a ..
network
low complexity
d-link
5.0