3.3
CVSSv2

CVE-2020-24578

Published: 22/12/2020 Updated: 26/04/2023
CVSS v2 Base Score: 3.3 | Impact Score: 2.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 296
Vector: AV:A/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An issue exists on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It has a misconfigured FTP service that allows a malicious network user to access system folders and download sensitive files (such as the password hash file).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dlink dsl2888a firmware