VendorsD-Linkcovr-2600r_firmwareall versions
Vulnerabilities

D-Link COVR-2600R Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-20432
D-Link COVR-2600R and COVR-3902 Kit before 1.01b05Beta01 use hardcoded credentials for telnet connection, which allows unauthenticated attackers to gain privileged access to the router, and to extract sensitive data or modify the configuration.
Published 2020-09-14 · Modified
10.0EPSS 0.039
CVE-2024-44674
D-Link COVR-2600R FW101b05 is vulnerable to Buffer Overflow. In the function sub_24E28, the HTTP_REFERER is obtained through an environment variable, and this field is controllable, allowing it to be used as the value for src.
Published 2024-10-07 · Analyzed
5.7EPSS 0.042