Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2024-45698
Disclosure Date: September 16, 2024 (last updated October 15, 2024)
Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenticated remote attackers to use hard-coded credentials to log into telnet and inject arbitrary OS commands, which can then be executed on the device.
0
Attacker Value
Unknown
CVE-2024-45697
Disclosure Date: September 16, 2024 (last updated September 20, 2024)
Certain models of D-Link wireless routers have a hidden functionality where the telnet service is enabled when the WAN port is plugged in. Unauthorized remote attackers can log in and execute OS commands using hard-coded credentials.
0
Attacker Value
Unknown
CVE-2024-45696
Disclosure Date: September 16, 2024 (last updated September 20, 2024)
Certain models of D-Link wireless routers contain hidden functionality. By sending specific packets to the web service, the attacker can forcibly enable the telnet service and log in using hard-coded credentials. The telnet service enabled through this method can only be accessed from within the same local network as the device.
0
Attacker Value
Unknown
CVE-2024-45695
Disclosure Date: September 16, 2024 (last updated September 18, 2024)
The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which allows unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.
0
Attacker Value
Unknown
CVE-2024-45694
Disclosure Date: September 16, 2024 (last updated September 18, 2024)
The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which allows unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.
0