logo

D-Link tells users to trash old VPN routers over bug too dangerous to identify

ID: 20b45016-f5a5-5154-95ac-8687830fdda0

STIX ID: report--20b45016-f5a5-5154-95ac-8687830fdda0

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2024-11-20

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Owners of older D-Link VPN routers are being told to retire and replace affected devices after disclosure of a critical unauthenticated remote code execution (buffer overflow) vulnerability in multiple EOL/EOS hardware revisions; D-Link will not issue patches and is offering a 20% discount on a replacement router. The advisory urges users to change management passwords and enable Wi-Fi encryption and warns that unpatched routers could enable surveillance, MITM, or lateral attacks (including ransomware deployment), although the report does not confirm active exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.