First published: Mon Aug 16 2021(Updated: )
D-Link router DSL-2750U with firmware vME1.16 or prior versions is vulnerable to unauthorized configuration modification. An unauthenticated attacker on the local network may exploit this, with CVE-2021-3708, to execute any OS commands on the vulnerable device.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dsl-2750u Firmware | <=1.16 | |
Dlink Dsl-2750u |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-3707.
The severity of CVE-2021-3707 is medium with a severity value of 5.5.
The affected software is D-Link router DSL-2750U with firmware vME1.16 or prior versions.
An unauthenticated attacker on the local network can exploit this vulnerability to execute any OS commands on the vulnerable device.
Upgrade the firmware of the D-Link router DSL-2750U to version 1.17 or later to mitigate this vulnerability.