First published: Sun Sep 24 2023(Updated: )
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-7000 up to 20151231 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /sysmanage/licence.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-240241 was assigned to this vulnerability. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: Vendor was contacted early and confirmed immediately that the product is end-of-life. It should be retired and replaced.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dar-7000 Firmware | <=20151231 | |
Dlink Dar-7000 | ||
Dlink Dar-8000 Firmware | <=20151231 | |
Dlink Dar-8000 | ||
All of | ||
<=20151231 | ||
All of | ||
<=20151231 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-5145 is high with a score of 8.8.
The D-Link DAR-7000 firmware up to version 20151231 is affected by CVE-2023-5145.
The vulnerability in CVE-2023-5145 is related to an unknown functionality in the /sysmanage/licence.php file.
To fix CVE-2023-5145, it is recommended to update to a patched version of the D-Link DAR-7000 firmware.
You can find more information about CVE-2023-5145 at the following references: [link1], [link2], [link3].