Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v9f5-5rq4-cwc6

Опубликовано: 01 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In D-Link DIR-816 A2_v1.10CNB04.img a command injection vulnerability occurs in /goform/Diagnosis, after the condition is met, setnum will be spliced into v10 by snprintf, and the system will be executed, resulting in a command injection vulnerability

In D-Link DIR-816 A2_v1.10CNB04.img a command injection vulnerability occurs in /goform/Diagnosis, after the condition is met, setnum will be spliced into v10 by snprintf, and the system will be executed, resulting in a command injection vulnerability

EPSS

Процентиль: 97%
0.3029
Средний

9.8 Critical

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 9.8
nvd
больше 3 лет назад

In D-Link DIR-816 A2_v1.10CNB04, DIR-878 DIR_878_FW1.30B08.img a command injection vulnerability occurs in /goform/Diagnosis, after the condition is met, setnum will be spliced into v10 by snprintf, and the system will be executed, resulting in a command injection vulnerability

EPSS

Процентиль: 97%
0.3029
Средний

9.8 Critical

CVSS3

Дефекты

CWE-77