cbcvebase.
CVE-2024-6045
published 2024-06-17

CVE-2024-6045: Certain models of D-Link wireless routers contain an undisclosed factory testing backdoor. Unauthenticated attackers on the local area network can force the…

high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
Certain models of D-Link wireless routers contain an undisclosed factory testing backdoor. Unauthenticated attackers on the local area network can force the device to enable Telnet service by accessing a specific URL and can log in by using the administrator credentials obtained from analyzing the firmware.

Affected

15 ranges
VendorProductVersion rangeFixed in
d-linke15>= earlier < 1.20.011.20.01
d-linke30>= earlier < 1.10.021.10.02
d-linkg403>= earlier < 1.10.011.10.01
d-linkg415>= earlier < 1.10.011.10.01
d-linkg416>= earlier < 1.10.011.10.01
d-linkm18>= earlier < 1.10.011.10.01
d-linkm30>= earlier < 1.10.021.10.02
d-linkm32>= earlier < 1.10.021.10.02
d-linkm60>= earlier < 1.10.021.10.02
d-linkr03>= earlier < 1.10.011.10.01
d-linkr04>= earlier < 1.10.011.10.01
d-linkr12>= earlier < 1.10.011.10.01
d-linkr15>= earlier < 1.20.011.20.01
d-linkr18>= earlier < 1.10.011.10.01
d-linkr32>= earlier < 1.10.021.10.02