Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-26w9-85c6-ccr8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction within the handler function of the /goform/addRouting route. This could lead to Command Injection via Shell Metacharacters.

An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction within the handler function of the /goform/addRouting route. This could lead to Command Injection via Shell Metacharacters.

EPSS

Процентиль: 96%
0.28613
Средний

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 9.8
nvd
больше 4 лет назад

An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction within the handler function of the /goform/addRouting route. This could lead to Command Injection via Shell Metacharacters.

EPSS

Процентиль: 96%
0.28613
Средний

Дефекты

CWE-78