CVE-2024-44342
published 2024-08-27CVE-2024-44342: D-Link DIR-846W A1 FW100A43 was discovered to contain a remote command execution (RCE) vulnerability via the wl(0).(0)_ssid parameter. This vulnerability is…
PriorityP262critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.97%
78.1th percentile
D-Link DIR-846W A1 FW100A43 was discovered to contain a remote command execution (RCE) vulnerability via the wl(0).(0)_ssid parameter. This vulnerability is exploited via a crafted POST request.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dlink | dir-846w_firmware | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Monitor for crafted POST requests targeting the wl(0).(0)_ssid parameter on D-Link DIR-846W devices, which is the exploitation vector for CVE-2024-44342. ↗
- →Monitor for POST requests to the /HNAP1/ interface on D-Link DIR-846W routers, as this endpoint is targeted by related RCE vulnerabilities (CVE-2024-41622) on the same device family. ↗
- ·CVE-2024-44342 affects D-Link DIR-846W A1 FW100A43 specifically. The device is end-of-life/end-of-support (EOS since 2020) and D-Link has confirmed no patch will be issued. ↗
- ·No authentication is required to exploit CVE-2024-44342 (CVSS 9.8 critical), making it remotely exploitable by unauthenticated attackers. ↗
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
2024-08-27
Published