HIGH🇵🇱 Wersja polska

CVE-2024-11062

CVSS 7.2v3.1pub. 2024-11-11upd. 2024-11-15

The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functionality provided by SSH and Telnet.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
  • Dlink Dsl6740c

    HW
    Dlink
    all versions
  • Dlink Dsl6740c Firmware

    OS
    Dlink
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Command Injection
CWE
References

Related vulnerabilities

CVE-2024-11068CRITICAL9.8PL ✓same product

D-Link DSL6740C: zdalne przejęcie konta przez błędne użycie uprzywilejowanych API

CVE-2024-11063HIGH7.2same product

The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administra...

CVE-2024-11064HIGH7.2same product

The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administra...

CVE-2024-11065HIGH7.2same product

The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administra...

CVE-2024-11066HIGH7.2same product

The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administra...