An issue was discovered on D-Link DSL-2888A devices with...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Apr 26, 2023
Description
Published by the National Vulnerability Database
Dec 22, 2020
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Apr 26, 2023
An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It has a misconfigured FTP service that allows a malicious network user to access system folders and download sensitive files (such as the password hash file).
References