Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2020-29323

Description

The D-link router DIR-885L-MFC 1.15b02, v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access to the firmware and to extract sensitive data.

POC

Reference

- https://cybersecurityworks.com/zerodays/cve-2020-29323-telnet-hardcoded-credentials.html

Github

- https://github.com/n0-traces/cve_monitor