go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

D-Link router - Arbitrary File Reading

TVN ID TVN-202406012
CVE ID CVE-2024-6044
CVSS 6.5 (Medium)
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Products E15, E30, G403, G415, G416, M15, M18, M30, M32, M60, R03, R04, R12, R15, R18, R32
Description Certain models of D-Link wireless routers have a path traversal vulnerability. Unauthenticated attackers on the same local area network can read arbitrary system files by manipulating the URL.
Solution Please update firmware of following models to 1.10.01 or later version:
G403, G415, G416, M18, R03, R04, R12, R18

Please update firmware of following models to 1.10.02 or later version:
E30, M30, M32, M60, R32

Please update firmware of following models to 1.20.01 or later version:
E15, M15, R15
Credit raymond
Public Date 2024-06-17
Top