cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-28729,https://securityvulnerability.io/vulnerability/CVE-2024-28729,Arbitrary Code Execution Vulnerability in DLink DWR 2000M and DWR CPE Products,"A notable security issue exists within DLink's DWR 2000M 5G CPE With Wifi 6 Ax1800 and the DWR CPE DWR-2000M_1.34ME firmware version. This vulnerability allows a local attacker to leverage this security flaw to execute arbitrary code. The exploitation occurs through specially crafted requests, which could potentially lead to unauthorized access and manipulation of device functionalities. Users of affected products are urged to evaluate their security posture and apply any available mitigations to safeguard against exploitation.",D-Link,Dwr-2000m Firmware,9.8,CRITICAL,0.0015699999639764428,false,false,false,false,,false,false,2024-11-12T23:15:00.000Z,0 CVE-2024-28730,https://securityvulnerability.io/vulnerability/CVE-2024-28730,Cross Site Scripting Vulnerability in DLink DWR 2000M 5G CPE,"A Cross Site Scripting vulnerability exists in DLink DWR 2000M 5G CPE devices, specifically through the VPN configuration module's file upload feature. This flaw permits local attackers to exploit the system, potentially allowing them to access sensitive information. Proper input sanitization and validation measures should be prioritized to mitigate such risks.",D-Link,Dwr-2000m Firmware,5.4,MEDIUM,0.0004400000034365803,false,false,false,false,,false,false,2024-11-12T23:15:00.000Z,0 CVE-2024-28731,https://securityvulnerability.io/vulnerability/CVE-2024-28731,Cross Site Request Forgery in D-Link DWR 2000M 5G CPE,"A Cross Site Request Forgery vulnerability exists in the D-Link DWR 2000M 5G CPE models, allowing a local attacker to exploit the Port Forwarding feature to retrieve sensitive information. This could lead to unauthorized access or manipulation of network configurations, highlighting the importance of proper user authentication and access controls in safeguarding devices.",D-Link,Dwr-2000m Firmware,4.3,MEDIUM,0.0004600000102072954,false,false,false,false,,false,false,2024-11-12T23:15:00.000Z,0