Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-55jg-7rxj-hh46

Опубликовано: 11 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2
CVSS3: 4.7

Описание

A vulnerability was identified in D-Link DNS-320 2.06B01. The impacted element is the function cgi_speed/cgi_dhcpd_lease/cgi_ddns/cgi_set_ip/cgi_upnp_del/cgi_dhcpd/cgi_upnp_add/cgi_upnp_edit of the file /cgi-bin/network_mgr.cgi. The manipulation leads to os command injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.

A vulnerability was identified in D-Link DNS-320 2.06B01. The impacted element is the function cgi_speed/cgi_dhcpd_lease/cgi_ddns/cgi_set_ip/cgi_upnp_del/cgi_dhcpd/cgi_upnp_add/cgi_upnp_edit of the file /cgi-bin/network_mgr.cgi. The manipulation leads to os command injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.

EPSS

Процентиль: 91%
0.04637
Низкий

2 Low

CVSS4

4.7 Medium

CVSS3

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 4.7
nvd
3 месяца назад

A vulnerability was identified in D-Link DNS-320 2.06B01. The impacted element is the function cgi_speed/cgi_dhcpd_lease/cgi_ddns/cgi_set_ip/cgi_upnp_del/cgi_dhcpd/cgi_upnp_add/cgi_upnp_edit of the file /cgi-bin/network_mgr.cgi. The manipulation leads to os command injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.

CVSS3: 4.7
fstec
3 месяца назад

Уязвимость функций cgi_speed(), cgi_dhcpd_lease(), cgi_ddns(), cgi_set_ip(), cgi_upnp_del(), cgi_dhcpd(), cgi_upnp_add(), cgi_upnp_edit() сценария /cgi-bin/network_mgr.cgi микропрограммного обеспечения сетевых хранилищ D-Link DNS-320, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 91%
0.04637
Низкий

2 Low

CVSS4

4.7 Medium

CVSS3

Дефекты

CWE-77
CWE-78