April 4, 2024, 3:37 p.m. | Eswar

Cyber Security News cybersecuritynews.com

A new command injection vulnerability and a backdoor account have been discovered in D-Link Network Attached Storage devices, which affects D-Link NAS devices, including DNS-340L, DNS-320L, DNS-327L, and DNS-325, among others. This exists in the nas_sharing.cgi file of these devices and the command injection vulnerability (CVE-2024-3273) exists in the system parameter. As a matter of […]


The post D-Link NAS Command Injection Flaw : 92,000 Devices Affected appeared first on Cyber Security News.

account backdoor cgi command command injection cve cve-2024 cyber security devices d-link d-link nas dns file flaw injection injection flaw link nas network network security parameter storage system vulnerability vulnerability exploitation

Senior Security Specialist, Forsah Technical and Vocational Education and Training (Forsah TVET) (NEW)

@ IREX | Ramallah, West Bank, Palestinian National Authority

Consultant(e) Junior Cybersécurité

@ Sia Partners | Paris, France

Senior Network Security Engineer

@ NielsenIQ | Mexico City, Mexico

Senior Consultant, Payment Intelligence

@ Visa | Washington, DC, United States

Corporate Counsel, Compliance

@ Okta | San Francisco, CA; Bellevue, WA; Chicago, IL; New York City; Washington, DC; Austin, TX

Security Operations Engineer

@ Samsara | Remote - US