cbcvebase.
CVE-2024-44342
published 2024-08-27

CVE-2024-44342: D-Link DIR-846W A1 FW100A43 was discovered to contain a remote command execution (RCE) vulnerability via the wl(0).(0)_ssid parameter. This vulnerability is…

PriorityP262critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.97%
78.1th percentile
D-Link DIR-846W A1 FW100A43 was discovered to contain a remote command execution (RCE) vulnerability via the wl(0).(0)_ssid parameter. This vulnerability is exploited via a crafted POST request.

Affected

1 ranges
VendorProductVersion rangeFixed in
dlinkdir-846w_firmware

Detection & IOCsextracted from sources · hover to see the quote

url/HNAP1/
commandwl(0).(0)_ssid
  • Monitor for crafted POST requests targeting the wl(0).(0)_ssid parameter on D-Link DIR-846W devices, which is the exploitation vector for CVE-2024-44342.
  • Monitor for POST requests to the /HNAP1/ interface on D-Link DIR-846W routers, as this endpoint is targeted by related RCE vulnerabilities (CVE-2024-41622) on the same device family.
  • ·CVE-2024-44342 affects D-Link DIR-846W A1 FW100A43 specifically. The device is end-of-life/end-of-support (EOS since 2020) and D-Link has confirmed no patch will be issued.
  • ·No authentication is required to exploit CVE-2024-44342 (CVSS 9.8 critical), making it remotely exploitable by unauthenticated attackers.
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.