Back to Database
Status published
High
CVE-2015-7245
Directory traversal vulnerability in D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03,...
Vulnerability Description
Directory traversal vulnerability in D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 allows remote attackers to read sensitive information via a .. (dot dot) in the errorpage parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2015-7245
Credits & Attribution
No credits recorded in the NVD database.
References
More from d-link
View All →CVE-2022-44929
An access control issue in D-Link DVG-G5402SP GE_1.03 allows unauthenticated...
Unknown
0
CVE-2022-44928
D-Link DVG-G5402SP GE_1.03 was discovered to contain a command injection...
Unknown
0
CVE-2021-33259
Several web interfaces in D-Link DIR-868LW 1.12b have no authentication...
Medium
5.3
CVE-2021-26709
D-Link DSL-320B-D1 devices through EU_1.25 are prone to multiple Stack-Based...
Critical
9.8
CVE-2020-9544
An issue was discovered on D-Link DSL-2640B E1 EU_1.01 devices....
High
7.5
Affected Vendor
d-link
View all reports →Affected Software
dvg-n5402sp firmware
Vulnerable Versions:
w1000cn-00, w1000cn-03, w2000en-00
Timeline
Official Publish:
April 24th, 2017
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.