Описание
A security flaw has been discovered in D-Link DSL-3782 2016-07-28. This issue affects the function system of the file /cgi-bin/New_GUI/Set/Diagnostics.asp of the component Diagnostics. Performing a manipulation of the argument Addr results in command injection. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks.
EPSS
7.4 High
CVSS3
6.5 Medium
CVSS2
Дефекты
Связанные уязвимости
A security flaw has been discovered in D-Link DSL-3782 2016-07-28. This issue affects the function system of the file /cgi-bin/New_GUI/Set/Diagnostics.asp of the component Diagnostics. Performing a manipulation of the argument Addr results in command injection. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks.
Уязвимость функции system файла /cgi-bin/New_GUI/Set/Diagnostics.asp компонента Diagnostics микропрограммного обеспечения маршрутизаторов D-Link DSL-3782, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
EPSS
7.4 High
CVSS3
6.5 Medium
CVSS2