Arbitrary Password Modification Vulnerability in D-LINK DSL-2888A Router
CVE-2021-33346

9.8CRITICAL

Key Information:

Vendor
D-Link
Vendor
CVE Published:
24 June 2021

Summary

The D-LINK DSL-2888A router is susceptible to an arbitrary password modification vulnerability that allows unauthorized users to alter the admin password. This security flaw can potentially lead to unauthorized access, enabling attackers to exploit the router's management interface. Users are advised to monitor their device's security and apply any available updates to mitigate risks associated with unauthorized access and maintain the integrity of their network configurations.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.