PoC exploit released for RCE zero-day in D-Link EXO AX4800 routers
ID: 845fbb3c-b53a-5e69-99cb-3d2dd1793e68
STIX ID: report--845fbb3c-b53a-5e69-99cb-3d2dd1793e68
Feed Name: Bleeping Computer
Threat Score
Researchers from SSD Secure Disclosure published a proof-of-concept for unauthenticated RCE in the D-Link EXO AX4800 (DIR-X4860) router: an HNAP authentication bypass combined with a command injection in SetVirtualServerSettings (LocalIPAddress parameter) allows attackers with access to the HNAP port to execute commands as root; affected firmware is DIRX4860A1_FWV1.04B03 and users are advised to disable remote management until a vendor patch is released.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
