vendor:
DIR-815, DIR-850L
by:
Samuel Huntley
8,8
CVSS
HIGH
Command Injection
78
CWE
Product Name: DIR-815, DIR-850L
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: YES
Related CWE: None
CPE: h:dlink:dir-815
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: WLAN
2020
SSDP command injection using UDP for a lot of Dlink routers including DIR-815, DIR-850L
DIR-815,850L and most of Dlink routers are susceptible to this flaw. This allows to perform command injection using SSDP packets and on UDP. So no authentication required. Just the fact that the attacker needs to be on wireless LAN or be able to fake a request coming from internal wireless LAN using some other mechanism.
Mitigation:
Update the router firmware to the latest version.