AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-14420

MEDIUM · CVSS 5.9 EPSS 0.51%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-09-13 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2017-14420
Severity
MEDIUM
CVSS
5.9
EPSS
0.51%

Original NVD Description

The D-Link NPAPI extension, as used on D-Link DIR-850L REV. A (with firmware through FW114WWb07_h2ab_beta1) and REV. B (with firmware through FW208WWb02) devices, does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.