D-Link DIR-890L
cpe:2.3:h:d-link:dir-890l:*:*:*:*:*:*:*, +8 more
- <= 111b04
A critical vulnerability exists in the D-Link DIR-890L router, affecting versions through DIR890LA1_FW111b04. The issue arises from hard-coded credentials embedded in the 'rgbin' binary, specifically for UART port authentication. This vulnerability allows users with physical access to the device to log into the UART port and gain root privileges.
Exploitation of this vulnerability allows for unauthorized access to the device's UART port, where hard-coded credentials can be used to gain root privileges on the router.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.