9
CVSSv2

CVE-2015-2049

Published: 23/02/2015 Updated: 26/04/2023
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Unrestricted file upload vulnerability in D-Link DCS-931L with firmware 1.04 and previous versions allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension.

Vulnerable Product Search on Vulmon Subscribe to Product

dlink dcs-931l_firmware

Exploits

## # This module requires Metasploit: metasploitcom/download # Current source: githubcom/rapid7/metasploit-framework ## require 'msf/core' class Metasploit4 < Msf::Exploit::Remote Rank = GreatRanking include Msf::Exploit::Remote::HttpClient include Msf::Exploit::EXE include Msf::Exploit::FileDropper HttpFingerprint ...
BSNL Teracom routers suffer from a firmware rewrite via unrestricted file upload issue and a link modification issue ...