DNS settings on some router models from D-Link can be modified without permission through the administration menu, from the web.
This change and attack essentially requires no authentication, and can be used to redirect users to malicious online sites, with dangerous scripts or even phishing pages.
The report was created and published by Todor Donev, a member of the Bulgarian security research group Ethical Hacker, whose goal is to establish a community of professionals who bring innovation to the field of computer security.
His research focused primarily on the D-Link DSL-2740R, but according to the report published Tuesday, other routers from the same manufacturer are also affected by this vulnerability. The researcher did not provide a list of affected devices, however.
It's unclear whether Donev contacted D-Link about the issue, as there's no information about an official announcement from the company about the issue. According to the company's official website, the DSL-2740R has been discontinued, meaning it's no longer for sale.
However, although production of the model has stopped, it may still receive support, as models in circulation and in use are still covered by the manufacturer's warranty.
DNS technology is responsible for translating domains into IP addresses of the servers that host websites. If the device is configured to connect to a DNS server operated by scammers, the content the user sees will of course not be the normal one.

