Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 12 min 98 bronnen 3 kritiek 34 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2024-3272

CRITICAL · 9.5 CVSS Gepubliceerd: CWE-798

Beschrijving

D-Link DNS-320L, DNS-325, DNS-327L, and DNS-340L contains a hard-coded credential that allows an attacker to conduct authenticated command injection, leading to remote, unauthorized code execution.

Required action: This vulnerability affects legacy D-Link products. All associated hardware revisions have reached their end-of-life (EOL) or end-of-service (EOS) life cycle and should be retired and replaced per vendor instructions.

Vendors

D-link

Affected products

Multiple Nas Devices

References