CVE-2024-40505: Critical severity d-link dap-1650 firmware vulnerability
Published Jul 16, 2024
·Updated
Directory Traversal vulnerability in D-Link DAP-1650 Firmware v.1.03 allows a local attacker to escalate privileges via the hedwig.cgi component.
Affected Software
3 affected components
D-Link DAP-1650
All of the following
Dlink Dap-1650 Firmware=1.03
Dlink Dap-1650
Event History
Jul 16, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-40505?
CVE-2024-40505 has a high severity rating due to its potential for privilege escalation.
2
How do I fix CVE-2024-40505?
To fix CVE-2024-40505, update the D-Link DAP-1650 firmware to the latest version provided by D-Link.
3
What systems are affected by CVE-2024-40505?
CVE-2024-40505 affects the D-Link DAP-1650 with Firmware v.1.03.
4
What is the impact of exploiting CVE-2024-40505?
Exploiting CVE-2024-40505 allows a local attacker to escalate their privileges on the affected system.
5
Is CVE-2024-40505 a remote or local vulnerability?
CVE-2024-40505 is a local vulnerability requiring access to the affected system.