CVE-2020-24579

HIGH NUCLEI

D-Link DSL-2888A <AU_2.31_V1.1.47ae55 - Auth Bypass

Title source: llm

Description

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. An unauthenticated attacker could bypass authentication to access authenticated pages and functionality.

Nuclei Templates (1)

D-Link DSL 2888a - Authentication Bypass/Remote Command Execution
HIGHby pikpikcu

Scores

CVSS v3 8.8
EPSS 0.8532
EPSS Percentile 99.4%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (1)
dlink/dsl2888a_firmware < au_2.31_v1.1.47ae55
Published Dec 22, 2020
Tracked Since Feb 18, 2026