CVE-2024-22853: Critical severity DLINK Go-rt-ac750 Firmware vulnerability
Published Feb 6, 2024
·Updated
D-LINK Go-RT-AC750 GORTAC750A1FWv101b03 has a hardcoded password for the Alphanetworks account, which allows remote attackers to obtain root access via a telnet session.
Affected Software
2 affected components
All of the following
DLINK Go-rt-ac750 Firmware=101b03
dlink Go-rt-ac750
Event History
Feb 6, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Apr 20, 56091
Event
via FIRST·02:54 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-22853?
CVE-2024-22853 is considered a high severity vulnerability due to the potential for remote root access.
2
How do I fix CVE-2024-22853?
To fix CVE-2024-22853, update the D-Link Go-RT-AC750 firmware to the latest version that resolves the hardcoded password issue.
3
What type of attack can be performed due to CVE-2024-22853?
CVE-2024-22853 allows attackers to gain root access to the device via a telnet session.
4
Which device is affected by CVE-2024-22853?
CVE-2024-22853 affects the D-LINK Go-RT-AC750 model running firmware version 101b03.
5
Is CVE-2024-22853 a local or remote vulnerability?
CVE-2024-22853 is a remote vulnerability that allows attackers from outside the network to exploit the device.