CVE-2010-4965: Critical severity dlink dcs-2121 firmware vulnerability
/etc/rc.d/rc.local on the D-Link DCS-2121 camera with firmware 1.04 configures a hardcoded password of admin for the root account, which makes it easier for remote attackers to obtain shell access by leveraging a running telnetd server.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4965?
CVE-2010-4965 is considered a high severity vulnerability due to the exposure of a hardcoded password that allows remote attackers to gain shell access.
How do I fix CVE-2010-4965?
To fix CVE-2010-4965, upgrade the firmware on the D-Link DCS-2121 camera to a version that does not contain the hardcoded password.
What are the consequences of CVE-2010-4965?
The consequences of CVE-2010-4965 include potential unauthorized access to the camera's system which could lead to data breaches or the compromise of the device.
Is CVE-2010-4965 still a risk?
CVE-2010-4965 is still a risk if the affected firmware version 1.04 remains in use and has not been updated subsequently.
Which devices are affected by CVE-2010-4965?
CVE-2010-4965 specifically affects the D-Link DCS-2121 camera running firmware version 1.04.