An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It contains an execute_cmd.cgi feature (that is not reachable via the web user interface) that lets an authenticated user execute Operating System commands.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:19:07.886Z
Reserved: 2020-08-21T00:00:00
Link: CVE-2020-24581
No data.
Status : Modified
Published: 2020-12-22T19:15:13.347
Modified: 2024-11-21T05:15:02.750
Link: CVE-2020-24581
No data.
OpenCVE Enrichment
No data.
Weaknesses