← voltar
CVE-2024-13030mediumexploração observadaCWE-266CWE-284

D-Link DIR-823G Web Management Interface HNAP1 SetVirtualServerSettings access control

35Vexday Risk Score

Priorize a correção. Ela exploração observada pelo VulnCheck.

ssvc Attendcvss 6.9epss 1.9%
da publicação à arma
Publicada no NVD30 de dez.
VulnCheck+437d
probabilidade de exploração
1.9%top 21% das CVEs
exploração observada
simVulnCheck
A vulnerability was found in D-Link DIR-823G 1.0.2B05_20181207. It has been rated as critical. This issue affects the function SetAutoRebootSettings/SetClientInfo/SetDMZSettings/SetFirewallSettings/SetParentsControlInfo/SetQoSSettings/SetVirtualServerSettings of the file /HNAP1/ of the component Web Management Interface. The manipulation leads to improper access controls. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
Produtos afetados
D-Link · DIR-823G