vendor:
DIR-300, DIR-645, DIR-815
by:
Zachary Cutlip, Michael Messner
N/A
CVSS
N/A
OS command injection via UPnP Multicast requests
78
CWE
Product Name: DIR-300, DIR-645, DIR-815
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: MIPS Little Endian, MIPS Big Endian
2013
D-Link Unauthenticated UPnP M-SEARCH Multicast Command Injection
Different D-Link Routers are vulnerable to OS command injection via UPnP Multicast requests. This module has been tested on DIR-300 and DIR-645 devices. Zachary Cutlip has initially reported the DIR-815 vulnerable. Probably there are other devices also affected.
Mitigation:
Ensure that UPnP is disabled on the router and that the router is running the latest firmware version.