← back
CVE-2023-7163

D-Link D-View 8 Unauthenticated Probe-Core Server Communication

CVSS 10 CRITICALEPSS 1.7%CWE-20
Vexday Risk Score
28Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 10EPSS 1.7%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
28 Dec 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A security issue exists in D-Link D-View 8 v2.0.2.89 and prior that could allow an attacker to manipulate the probe inventory of the D-View service. This could result in the disclosure of information from other probes, denial of service conditions due to the probe inventory becoming full, or the execution of tasks on other probes.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Affected products
D-Link · D-View 8

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →