CVE-2023-46033: Medium severity d-link dsl-2730u firmware vulnerability
Published Oct 19, 2023
·Updated
UNSUPPORTED WHEN ASSIGNED D-Link (Non-US) DSL-2750U N300 ADSL2+ and (Non-US) DSL-2730U N150 ADSL2+ are vulnerable to Incorrect Access Control. The UART/Serial interface on the PCB, provides log output and a root terminal without proper access control.
Affected Software
4 affected components
All of the following
Dlink Dsl-2730u Firmware
Dlink Dsl-2730u
All of the following
Dlink Dsl-2750u Firmware
Dlink Dsl-2750u
Event History
Oct 19, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
04:15 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this D-Link router?
The vulnerability ID for this D-Link router is CVE-2023-46033.
2
What is the severity rating of CVE-2023-46033?
CVE-2023-46033 has a severity rating of 6.8 (medium).
3
Which D-Link router models are affected by CVE-2023-46033?
The D-Link DSL-2750U N300 ADSL2+ and DSL-2730U N150 ADSL2+ routers are affected by CVE-2023-46033.
4
What is the vulnerability in D-Link routers?
The vulnerability in D-Link routers is Incorrect Access Control.
5
Is there a fix available for CVE-2023-46033?
As the vulnerability is listed as 'UNSUPPORTED WHEN ASSIGNED,' there may not be an official fix available. It is recommended to refer to the manufacturer's support announcement and website for any updates or patches.