V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2024-3272
CVE
Critical KEVConfirmedExploit available

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as very critical, has been found in D-Link DNS-320L, DNS-325, DNS-327…

CVSS
9.8
Critical
EPSS
0.94
p99
Published
2024-01-01
Updated
2024-04-11
Description

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as very critical, has been found in D-Link DNS-320L, DNS-325, DNS-327L and DNS-340L up to 20240403. This issue affects some unknown processing of the file /cgi-bin/nas_sharing.cgi of the component HTTP GET Request Handler. The manipulation of the argument user with the input messagebus leads to hard-coded credentials. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-259283. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: Vendor was contacted early and confirmed immediately that the product is end-of-life. It should be retired and replaced.

Tags · CWE
KEVPre-auth
CWE-798
CAPEC-70
CAPEC-191
Affected products
Dnr-202l_firmwareDnr-322l_firmwareDnr-326_firmwareDns-1100-4_firmwareDns-1200-05_firmwareDns-120_firmwareDns-1550-04_firmwareDns-315l_firmwareDns-320_firmwareDns-320l_firmwareDns-320lw_firmwareDns-321_firmwareDns-323_firmwareDns-325_firmwareDns-326_firmwareDns-327l_firmwareDns-340l_firmwareDns-343_firmwareDns-345_firmwareDns-726-4_firmware
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2024-01-01
Published
2024-04-11
Added to KEV
2024-04-11
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.941 · p99
Known exploited (KEV)
Yes
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-70 · CWE-798
└ via CAPEC-191 · CWE-798
Known exploits — Сканер-ВС
CVE-2024-3272
cisa · https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Enterprise
Affected software
ProductVendorStatus
dnr-202l_firmware*Exploited
dnr-322l_firmware*Exploited
dnr-326_firmware*Exploited
dns-1100-4_firmware*Exploited
dns-1200-05_firmware*Exploited
dns-120_firmware*Exploited
dns-1550-04_firmware*Exploited
dns-315l_firmware*Exploited
dns-320_firmware*Exploited
dns-320l_firmware*Exploited
dns-320lw_firmware*Exploited
dns-321_firmware*Exploited
dns-323_firmware*Exploited
dns-325_firmware*Exploited
dns-326_firmware*Exploited
dns-327l_firmware*Exploited
dns-340l_firmware*Exploited
dns-343_firmware*Exploited
dns-345_firmware*Exploited
dns-726-4_firmware*Exploited
Source databases
CVE
Related vulnerabilities