First published: Tue Dec 22 2020(Updated: )
An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. Lack of authentication functionality allows an attacker to assign a static IP address that was once used by a valid user.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dsl2888a Firmware | <au_2.31_v1.1.47ae55 | |
Dlink Dsl2888a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-24580 is a vulnerability found on D-Link DSL-2888A devices that allows an attacker to assign a static IP address without authentication.
CVE-2020-24580 has a severity rating of 7.5 (High).
To mitigate CVE-2020-24580, ensure that your D-Link DSL-2888A device is updated to firmware version AU_2.31_V1.1.47ae55 or later.