Dsl6740c
Vendor:
First CVE: Oct 30, 2024 · Active for 1 year
9
Total CVEs
More Total CVEs than 83% of tracked products
9.0
Avg CVEs / Year
Higher CVE frequency than 92% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 60% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Dsl6740c over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 30, 2024
20 months ago
Most Recent CVE
Nov 11, 2024
623 days ago
CVE Severity & Scoring
Dsl6740c9 CVEs
11%
78%
11%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network7 (77.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network2 (22.2%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None9 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High5 (55.6%)
None4 (44.4%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-11068CRITICAL The D-Link DSL6740C modem has an Incorrect Use of Privileged APIs vulnerability, allowing unauthenticated remote attackers to modify any user’s password by leveraging the API, ther | Nov 11, 2024 | 9.8 | 31 | NO | NO |
CVE-2024-48271HIGH D-Link DSL6740C v6.TR069.20211230 was discovered to use insecure default credentials for Administrator access, possibly allowing attackers to bypass authentication and escalate pri | Oct 30, 2024 | 8.8 | 25 | NO | NO |
CVE-2024-11067HIGH The D-Link DSL6740C modem has a Path Traversal Vulnerability, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files. Additionally, | Nov 11, 2024 | 7.5 | 24 | NO | NO |
CVE-2024-11066HIGH The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through | Nov 11, 2024 | 7.2 | 23 | NO | NO |
CVE-2024-11065HIGH The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through | Nov 11, 2024 | 7.2 | 23 | NO | NO |
CVE-2024-11064HIGH The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through | Nov 11, 2024 | 7.2 | 23 | NO | NO |
CVE-2024-11062HIGH The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through | Nov 11, 2024 | 7.2 | 23 | NO | NO |
CVE-2024-11063HIGH The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through | Nov 11, 2024 | 7.2 | 19 | NO | NO |
CVE-2024-48272MEDIUM D-Link DSL6740C v6.TR069.20211230 was discovered to use an insecure default Wifi password, possibly allowing attackers to connect to the device via a bruteforce attack. | Oct 30, 2024 | 6.5 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Dsl6740c
Top CWEs
Versions
No cataloged versions.