CVE-2023-41603

D-Link R15 before v1.08.02 was discovered to contain no firewall restrictions for IPv6 traffic. This allows attackers to arbitrarily access any services running on the device that may be inadvertently listening via IPv6.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:r15_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dlink:r15:-:*:*:*:*:*:*:*

History

12 Jan 2024, 19:13

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
CPE cpe:2.3:h:dlink:r15:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:r15_firmware:*:*:*:*:*:*:*:*
References () https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10347 - () https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10347 - Patch, Vendor Advisory
First Time Dlink r15 Firmware
Dlink r15
Dlink
CWE NVD-CWE-noinfo

10 Jan 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-10 08:15

Updated : 2025-06-17 16:15


NVD link : CVE-2023-41603

Mitre link : CVE-2023-41603


JSON object : View

Products Affected

dlink

  • r15
  • r15_firmware