Backdoor in DIR-850L - CVE-2016-10178
Published: September 11, 2017 / Updated: January 23, 2019
DIR-850L
Detailed vulnerability description
The weakness exists due to the presence of backdoor code. A remote attacker can obtain passwords via the 'PUT' and 'GET' requests, use backdoor account via Alphanetworks / wrgac25_dlink.2013gui_dir850l to gain access to the router and update the firmware with a custom.
How to mitigate CVE-2016-10178
Cybersecurity Help is currently unaware of any official patch addressing the vulnerability.