Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-29295

Опубликовано: 10 авг. 2021
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

Null Pointer Dereference vulnerability exists in D-Link DSP-W215 1.10, which could let a remote malicious user cause a denial of servie via usr/bin/lighttpd. It could be triggered by sending an HTTP request without URL in the start line directly to the device. NOTE: The DSP-W215 and all hardware revisions is considered End of Life and as such this issue will not be patched

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:dlink:dsp-w215_firmware:1.10:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dsp-w215:-:*:*:*:*:*:*:*

EPSS

Процентиль: 63%
0.00443
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

** UNSUPPORTED WHEN ASSIGNED **Null Pointer Dereference vulnerability exists in D-Link DSP-W215 1.10, which could let a remote malicious user cause a denial of servie via usr/bin/lighttpd. It could be triggered by sending an HTTP request without URL in the start line directly to the device. NOTE: The DSP-W215 and all hardware revisions is considered End of Life and as such this issue will not be patched.

EPSS

Процентиль: 63%
0.00443
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-476