First published: Mon Feb 23 2015(Updated: )
Unrestricted file upload vulnerability in D-Link DCS-931L with firmware 1.04 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-Link DCS-931L Firmware | <=1.04 | |
D-Link DCS-931L |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2049 is considered to have a critical severity level due to the potential for remote code execution.
To fix CVE-2015-2049, update the D-Link DCS-931L firmware to version 1.05 or later.
Anyone using the D-Link DCS-931L with firmware version 1.04 or earlier is affected by CVE-2015-2049.
CVE-2015-2049 allows attackers to upload malicious executable files, potentially leading to arbitrary code execution.
CVE-2015-2049 is a remote vulnerability that requires authenticated users to exploit it.