logo

PoC exploit released for RCE zero-day in D-Link EXO AX4800 routers

ID: 845fbb3c-b53a-5e69-99cb-3d2dd1793e68

STIX ID: report--845fbb3c-b53a-5e69-99cb-3d2dd1793e68

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-05-14

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Researchers from SSD Secure Disclosure published a proof-of-concept for unauthenticated RCE in the D-Link EXO AX4800 (DIR-X4860) router: an HNAP authentication bypass combined with a command injection in SetVirtualServerSettings (LocalIPAddress parameter) allows attackers with access to the HNAP port to execute commands as root; affected firmware is DIRX4860A1_FWV1.04B03 and users are advised to disable remote management until a vendor patch is released.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.