Description
The D-Link router DIR-880L 1.07 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access to the firmware and to extract sensitive data.
References
https://cybersecurityworks.com/zerodays/cve-2020-29322-telnet-hardcoded-credentials.html
ExploitThird Party Advisory
https://cybersecurityworks.com/zerodays/cve-2020-29322-telnet-hardcoded-credentials.html
ExploitThird Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
7.5 · High
Information
Source identifier
Vulnerability status
Modified
Published
2021-06-04T18:15:07.657Z
4 years agoLast modified
2024-11-21T04:23:54.240Z
1 year ago