D-Link DAR-7000是中国友讯(D-Link)公司的一款上网行为审计网关。 D-Link DAR-7000-40 V31R02B1413C版本存在代码问题漏洞,该漏洞源于对参数 file_upload 的错误操作会导致上传不受限制。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| D-Link | DAR-7000-40 | V31R02B1413C | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-4960 | 6.3 MEDIUM | D-Link DAR-7000-40 licenseauthorization.php unrestricted upload |
| CVE-2024-4961 | 6.3 MEDIUM | D-Link DAR-7000-40 onlineuser.php unrestricted upload |
| CVE-2024-4962 | 6.3 MEDIUM | D-Link DAR-7000-40 resmanage.php unrestricted upload |
| CVE-2024-4964 | 6.3 MEDIUM | D-Link DAR-7000-40 urlblist.php unrestricted upload |
| CVE-2024-4965 | 6.3 MEDIUM | D-Link DAR-7000-40 resmanage.php os command injection |
No comments yet