CVE-2023-36091: Critical severity d-link dir-895l firmware vulnerability
UNSUPPORTED WHEN ASSIGNED Authentication Bypass vulnerability in D-Link DIR-895 FW102b07 allows remote attackers to gain escalated privileges via via function phpcgimain in cgibin. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-36091?
The severity of CVE-2023-36091 is critical with a CVSS score of 9.8.
How does the Authentication Bypass vulnerability in D-Link DIR-895 FW102b07 work?
The Authentication Bypass vulnerability in D-Link DIR-895 FW102b07 allows remote attackers to gain escalated privileges by exploiting the function phpcgi_main in cgibin.
Who is affected by CVE-2023-36091?
CVE-2023-36091 affects products that are no longer supported by the maintainer.
Is D-Link DIR-895 FW102b07 vulnerable to CVE-2023-36091?
Yes, D-Link DIR-895 FW102b07 is vulnerable to CVE-2023-36091.
How can I protect myself from CVE-2023-36091?
It is recommended to contact the maintainer or vendor for an updated version or security patch as the affected product is no longer supported.