CVE-2020-9279: Critical severity d-link dsl-2640b firmware vulnerability
An issue was discovered on D-Link DSL-2640B B2 EU4.01B devices. A hard-coded account allows management-interface login with high privileges. The logged-in user can perform critical tasks and take full control of the device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-9279?
CVE-2020-9279 is considered a critical vulnerability due to the presence of a hard-coded account that allows for unauthorized high-privilege access.
How do I fix CVE-2020-9279?
To mitigate CVE-2020-9279, ensure you update the D-Link DSL-2640B to the latest firmware version that addresses this vulnerability.
Who is affected by CVE-2020-9279?
The vulnerability CVE-2020-9279 specifically affects D-Link DSL-2640B devices running firmware version eu_4.01b.
What actions can an attacker perform due to CVE-2020-9279?
An attacker exploiting CVE-2020-9279 can gain full control of the D-Link DSL-2640B device and perform critical management tasks.
Is there a known exploit for CVE-2020-9279?
Yes, there are known exploit scenarios for CVE-2020-9279 that leverage the hard-coded account to gain unauthorized access.