PT-2023-6106 · D Link · D-Link D-View

Rgod

·

Published

2023-10-04

·

Updated

2025-08-07

·

CVE-2023-44414

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions D-Link D-View (affected versions not specified)
Description The issue is related to the exposure of a dangerous function in the coreservice action script action of the D-Link D-View platform. This allows remote attackers to execute arbitrary code on affected installations without requiring authentication. An attacker can leverage this vulnerability to execute code in the context of SYSTEM.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2023-06811
CVE-2023-44414
ZDI-23-1512

Affected Products

D-Link D-View