← Back to browse · API

CVE-2024-57045

Severity
CRITICAL
CVSS
9.8
EPSS
0.32222
Risk score
50.48
CISA KEV
No
PoC
No
Published
2025-02-18
Modified
2025-02-19
First seen
2026-08-07
Aliases
EUVD-2025-4681, GHSA-WC7R-HP6Q-64M9
Products
n/a:n/a n/a
Sources
euvd EUVD-2025-4681

Description

A vulnerability in the D-Link DIR-859 router with firmware version A3 1.05 and earlier permits unauthorized individuals to bypass the authentication. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page.

References