CVE-2015-2051: D-Link DIR-645 Router Remote Code Execution Vulnerability
The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP interface.
Other sources
D-Link DIR-645 Wired/Wireless Router allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP interface.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Disconnect any D-Link DIR-645 routers (affected firmware 1.04b12 and earlier) from networks if still in use: unplug WAN/LAN cables, disable wireless interfaces, or power off the device to isolate it from the Internet and internal networks (the product is end-of-life).
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2051?
CVE-2015-2051 is considered to have a high severity as it allows remote attackers to execute arbitrary commands on the vulnerable D-Link DIR-645 routers.
How do I fix CVE-2015-2051?
To fix CVE-2015-2051, update the firmware of the D-Link DIR-645 router to a version later than 1.04b12.
Which versions of D-Link DIR-645 are affected by CVE-2015-2051?
CVE-2015-2051 affects the D-Link DIR-645 router with firmware versions up to and including 1.04b12.
Can CVE-2015-2051 be exploited remotely?
Yes, CVE-2015-2051 can be exploited remotely through the HNAP interface of the D-Link DIR-645 router.
What devices are affected by CVE-2015-2051?
CVE-2015-2051 specifically affects the D-Link DIR-645 Wired/Wireless Router Rev. Ax with the vulnerable firmware versions.