Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Sep 29, 2022

CVE-2011-4723

High
EPSS 12.7%CISA KEV
D-Link/DIR-300 Router

Description

The D-Link DIR-300 router stores cleartext passwords, which allows context-dependent attackers to obtain sensitive information.

EPSS — Exploit Probability

12.7%

Higher than 93.9% of all CVEs

Required Action

https://www.dlink.com/uk/en/support/product/dir-300-wireless-g-router; https://nvd.nist.gov/vuln/detail/CVE-2011-4723

Risk Assessment

ELEVATED
In CISA KEV

Details

Severity
High
EPSS
12.7%
CISA KEV
Yes
Ransomware
Unknown
Articles
0

Timeline

Published

Sep 8, 2022

Added to KEV

Sep 8, 2022

Remediation Due

Sep 29, 2022

Affected Product

D-Link

DIR-300 Router

View all D-Link CVEs