Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-66f6-pmgc-xcpm

Опубликовано: 29 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2
CVSS3: 7.2

Описание

A security vulnerability has been detected in D-Link DI-500WF 14.04.10A1T. The impacted element is an unknown function of the file /version_upgrade.asp of the component jhttpd. The manipulation of the argument path leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

A security vulnerability has been detected in D-Link DI-500WF 14.04.10A1T. The impacted element is an unknown function of the file /version_upgrade.asp of the component jhttpd. The manipulation of the argument path leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

EPSS

Процентиль: 95%
0.09746
Низкий

2 Low

CVSS4

7.2 High

CVSS3

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 4.7
nvd
около 1 года назад

A security vulnerability has been detected in D-Link DI-500WF 14.04.10A1T. The impacted element is an unknown function of the file /version_upgrade.asp of the component jhttpd. The manipulation of the argument path leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 4.7
fstec
около 1 года назад

Уязвимость компонента jhttpd микропрограммного обеспечения маршрутизатора D-Link DI-500WF, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 95%
0.09746
Низкий

2 Low

CVSS4

7.2 High

CVSS3

Дефекты

CWE-77
CWE-78