cve/2019/CVE-2019-19224.md
2025-09-29 21:09:30 +02:00

855 B

CVE-2019-19224

Description

A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to download the configuration (binary file) settings by submitting a rom-0 GET request without being authenticated on the admin interface.

POC

Reference

Github

No PoCs found on GitHub currently.