Unknown
CVE-2024-0717
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2024-0717
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
A vulnerability classified as critical was found in D-Link DAP-1360, DIR-300, DIR-615, DIR-615GF, DIR-615S, DIR-615T, DIR-620, DIR-620S, DIR-806A, DIR-815, DIR-815AC, DIR-815S, DIR-816, DIR-820, DIR-822, DIR-825, DIR-825AC, DIR-825ACF, DIR-825ACG1, DIR-841, DIR-842, DIR-842S, DIR-843, DIR-853, DIR-878, DIR-882, DIR-1210, DIR-1260, DIR-2150, DIR-X1530, DIR-X1860, DSL-224, DSL-245GR, DSL-2640U, DSL-2750U, DSL-G2452GR, DVG-5402G, DVG-5402G, DVG-5402GFRU, DVG-N5402G, DVG-N5402G-IL, DWM-312W, DWM-321, DWR-921, DWR-953 and Good Line Router v2 up to 20240112. This vulnerability affects unknown code of the file /devinfo of the component HTTP GET Request Handler. The manipulation of the argument area with the input notice|net|version leads to information disclosure. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-251542 is the identifier assigned to this vulnerability.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- dap-1360 firmware,
- dir-1210 firmware,
- dir-1260 firmware,
- dir-2150 firmware,
- dir-300 firmware,
- dir-615 firmware,
- dir-615gf firmware,
- dir-615s firmware,
- dir-615t firmware,
- dir-620 firmware,
- dir-620s firmware,
- dir-806a firmware,
- dir-815 firmware,
- dir-815/ac firmware,
- dir-815s firmware,
- dir-816 firmware,
- dir-820 firmware,
- dir-822 firmware,
- dir-825 firmware,
- dir-825ac firmware,
- dir-825acf firmware,
- dir-825acg1 firmware,
- dir-841 firmware,
- dir-842 firmware,
- dir-842s firmware,
- dir-843 firmware,
- dir-853 firmware,
- dir-878 firmware,
- dir-882 firmware,
- dir-x1530 firmware,
- dir-x1860 firmware,
- dsl-224 firmware,
- dsl-245gr firmware,
- dsl-2640u firmware,
- dsl-2750u firmware,
- dsl-g2452gr firmware,
- dvg-5402g firmware,
- dvg-5402g/gfru firmware,
- dvg-n5402g firmware,
- dvg-n5402g/il firmware,
- dwm-312w firmware,
- dwm-321 firmware,
- dwr-921 firmware,
- dwr-953 firmware
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: