Dlink

Dsl2888a Firmware

4 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 19.84%
  • Published 22.12.2020 19:15:13
  • Last modified 21.11.2024 05:15:02

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It has a misconfigured FTP service that allows a malicious network user to access system folders and download sensitive files (such as the password hash f...

Exploit
  • EPSS 87.79%
  • Published 22.12.2020 19:15:13
  • Last modified 21.11.2024 05:15:02

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. An unauthenticated attacker could bypass authentication to access authenticated pages and functionality.

Exploit
  • EPSS 0.1%
  • Published 22.12.2020 19:15:13
  • Last modified 21.11.2024 05:15:02

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. Lack of authentication functionality allows an attacker to assign a static IP address that was once used by a valid user.

Exploit
  • EPSS 87.2%
  • Published 22.12.2020 19:15:13
  • Last modified 21.11.2024 05:15:02

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It contains an execute_cmd.cgi feature (that is not reachable via the web user interface) that lets an authenticated user execute Operating System command...