Beveiligingsadvies

CVE-2025-34248

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-10-09 20:43:53
Laatst bijgewerkt 2026-05-15 11:15:39
Toegewezen door VulnCheck
CVSS-score 7.2
Status PUBLISHED

Beschrijving

D-Link Nuclias Connect firmware versions < 1.3.1.4 contain a directory traversal vulnerability within /api/web/dnc/global/database/deleteBackup due to improper sanitization of the deleteBackupList parameter. This can allow an authenticated attacker to delete arbitrary files impacting the integrity and availability of the system.