CVE-2021-20694: High severity d-link dap-1880ac firmware vulnerability
Published Apr 26, 2021
·Updated
Improper access control vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to bypass access restriction and to start a telnet service via unspecified vectors.
Affected Software
2 affected components
Dlink Dap-1880ac Firmware<=1.21
Dlink Dap-1880ac
Event History
Apr 26, 2021
CVE Published
via MITRE·12:20 AM
Data Sourced
via MITRE·12:20 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-20694?
CVE-2021-20694 has been classified with a high severity due to improper access control allowing potential unauthorized access.
2
How do I fix CVE-2021-20694?
To fix CVE-2021-20694, update the DAP-1880AC firmware to version 1.22 or later.
3
What versions of DAP-1880AC firmware are affected by CVE-2021-20694?
CVE-2021-20694 affects DAP-1880AC firmware version 1.21 and earlier.
4
What are the potential risks of CVE-2021-20694?
The risks associated with CVE-2021-20694 include unauthorized remote access and potential manipulation of the device settings.
5
Is there a workaround for CVE-2021-20694?
While the best solution is a firmware update, users can mitigate risks by disabling telnet and restricting device access.