An access control issue in D-Link DVG-G5402SP GE_1.03 allows unauthenticated attackers to escalate privileges via arbitrarily editing VoIP SIB profiles.
During installation, installed file permissions are set to allow anyone to modify those files.
Link | Tags |
---|---|
https://cyber-guy.gitbook.io/cyber-guys-blog/pocs/cve-2022-44929 | third party advisory exploit |