cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-25078,https://securityvulnerability.io/vulnerability/CVE-2020-25078,Remote Administrator Password Disclosure in D-Link Security Cameras,"A vulnerability exists in D-Link DCS-2530L (versions prior to 1.06.01 Hotfix) and DCS-2670L (versions up to 2.02) security cameras that allows an attacker to exploit the /config/getuser endpoint. This exploit can lead to the unauthorized disclosure of the administrator password without requiring authentication, putting sensitive information at risk and enabling potential unauthorized access to the device's administrative features.",D-Link,Dcs-2530l Firmware,7.5,HIGH,0.9058899879455566,false,,false,false,true,2021-10-15T13:03:29.000Z,true,false,false,,2020-09-02T15:33:18.000Z,0 CVE-2020-25079,https://securityvulnerability.io/vulnerability/CVE-2020-25079,Command Injection Vulnerability in D-Link DCS-2530L and DCS-2670L Devices,"Authenticated command injection vulnerability exists in D-Link DCS-2530L and DCS-2670L devices, allowing attackers to execute arbitrary commands through the cgi-bin/ddns_enc.cgi interface. Users are urged to update their devices to the latest firmware to mitigate the risk posed by this security flaw.",D-Link,Dcs-2530l Firmware,8.8,HIGH,0.0014400000218302011,false,,false,false,false,,,false,false,,2020-09-02T15:33:07.000Z,0