CVE-2024-41610

CRITICAL

D-Link DIR-820LW REVB Firmware 2.03.B01_TC - Use of Hard-coded Credentials in Telnet Service

Title source: llm
STIX 2.1

Description

D-Link DIR-820LW REVB FIRMWARE PATCH 2.03.B01_TC contains hardcoded credentials in the Telnet service, enabling attackers to log in remotely to the Telnet service and perform arbitrary commands.

Scores

CVSS v3 9.8
EPSS 0.0049
EPSS Percentile 65.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-798
Status published
Products (1)
dlink/dir-820lw_firmware 2.03
Published Jul 30, 2024
Tracked Since Feb 18, 2026