Unrestricted File Upload Vulnerability in D-Link DAR-7000-40 V31R02B1413C
CVE-2024-4962
9.8CRITICAL
What is CVE-2024-4962?
A vulnerability has been identified in the D-Link DAR-7000-40 where an unrestricted upload can be exploited through the manipulation of the /useratte/resmanage.php file. This flaw allows attackers to upload malicious files remotely. Importantly, this issue affects products that are no longer supported, underlining the need for users to replace end-of-life equipment to mitigate security threats. The vendor has confirmed the product's end-of-life status, making it critical for users to seek alternatives.
Affected Version(s)
DAR-7000-40 V31R02B1413C