CVE-2011-4723 describes a critical vulnerability in the D-Link DIR-300 router where cleartext passwords are stored, allowing attackers to obtain sensitive information. This vulnerability has a CVSS score of 5.7 (Medium) and is exploitable via adjacent network access with low privileges, leading to high confidentiality impact. Notably, it is listed in CISA's KEV catalog, indicating active exploitation, and has garnered significant community discussion, despite a lack of public exploit code on platforms like Metasploit or ExploitDB.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:dlink:dir-300_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:S/C:C/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.