CVE-2024-57682: Medium severity d-link dir-816 a2 vulnerability
Published Jan 16, 2025
·Updated
An information disclosure vulnerability in the component dstatus.asp of D-Link 816A2FWv1.10CNB05R1B011D88210 allows unauthenticated attackers to access sensitive information via a crafted POST request.
Affected Software
3 affected components
D-Link 816A2 Firmware
All of the following
Dlink Dir-816 Firmware=1.10cnb05_r1b011d88210
Dlink DIR-816=a2
Event History
Jan 16, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-57682?
CVE-2024-57682 is classified as a moderate severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2024-57682?
To fix CVE-2024-57682, it is recommended to update to the latest firmware version provided by D-Link that addresses this vulnerability.
3
What information can be disclosed due to CVE-2024-57682?
CVE-2024-57682 allows unauthenticated attackers to access sensitive information from the device through a specially crafted POST request.
4
Which devices are affected by CVE-2024-57682?
CVE-2024-57682 specifically affects the D-Link 816A2 Firmware.
5
Is authentication required to exploit CVE-2024-57682?
No, CVE-2024-57682 can be exploited by unauthenticated attackers, making it particularly concerning.