VYPR
Unrated severityNVD Advisory· Published Nov 11, 2024· Updated Nov 24, 2024

D-Link DSL6740C - Arbitrary File Reading through Path Traversal

CVE-2024-11067

Description

The D-Link DSL6740C modem has a Path Traversal Vulnerability, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files. Additionally, since the device's default password is a combination of the MAC address, attackers can obtain the MAC address through this vulnerability and attempt to log in to the device using the default password.

Affected products

2
  • Dlink/DSL6740Cllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.