CVE-2024-57045
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 18, 2025
Updated: Feb 19, 2025
CWE ID 287
Summary
CVE-2024-57045 is a vulnerability affecting D-Link DIR-859 routers with firmware versions A3 1.05 and earlier. This issue allows unauthenticated attackers to bypass the authentication mechanism. They can exploit this vulnerability by forging a malicious post request to the /getcfg.php page, enabling them to obtain valid usernames and passwords, putting user data at risk. This issue highlights the importance of keeping routers updated to mitigate potential threats.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share