Critical severity9.8NVD Advisory· Published Sep 16, 2024· Updated Jun 17, 2026
CVE-2024-45698
CVE-2024-45698
Description
Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenticated remote attackers to use hard-coded credentials to log into telnet and inject arbitrary OS commands, which can then be executed on the device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:o:dlink:dir-x4860_firmware:1.00:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:dlink:dir-x4860_firmware:1.00:*:*:*:*:*:*:*
- cpe:2.3:o:dlink:dir-x4860_firmware:1.04:*:*:*:*:*:*:*
- D-Link/DIR-X4860 A1v5Range: 1.00
Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-8091-bcd52-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-8090-bf06b-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.