Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-2218

Опубликовано: 09 фев. 2026
Источник: nvd
CVSS3: 6.3
CVSS3: 8.8
CVSS2: 6.5
EPSS Низкий

Описание

A vulnerability was determined in D-Link DCS-933L up to 1.14.11. This affects an unknown function of the file /setSystemAdmin of the component alphapd. This manipulation of the argument AdminID causes command injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. This vulnerability only affects products that are no longer supported by the maintainer.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:dlink:dcs-933l_firmware:*:*:*:*:*:*:*:*
Версия до 1.14.11 (включая)
cpe:2.3:h:dlink:dcs-933l:-:*:*:*:*:*:*:*

EPSS

Процентиль: 88%
0.03454
Низкий

6.3 Medium

CVSS3

8.8 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-74
CWE-77

Связанные уязвимости

CVSS3: 6.3
github
6 месяцев назад

A vulnerability was determined in D-Link DCS-933L up to 1.14.11. This affects an unknown function of the file /setSystemAdmin of the component alphapd. This manipulation of the argument AdminID causes command injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 8.8
fstec
6 месяцев назад

Уязвимость функции setSystemAdmin() встроенного веб-сервера alphapd микропрограммного обеспечения IP-камер D-Link DCS-933L, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 88%
0.03454
Низкий

6.3 Medium

CVSS3

8.8 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-74
CWE-77