vendor:
DIR-300 rev B / DIR-600 rev B / DIR-645 / DIR-845 / DIR-865
by:
Anonymous
7,5
CVSS
HIGH
Unauthenticated OS Command Injection
78
CWE
Product Name: DIR-300 rev B / DIR-600 rev B / DIR-645 / DIR-845 / DIR-865
Affected Version From: DIR-300 rev B - 2.14b01, DIR-600 - 2.16b01, DIR-645 - 1.04b01, DIR-845 - 1.01b02, DIR-865 - 1.05b03
Affected Version To: Other devices and firmware versions may be also vulnerable.
Patch Exists: YES
Related CWE: N/A
CPE: h:d-link:dir-300_rev_b
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2020
OS-Command Injection via UPnP SOAP Interface in multiple D-Link devices
The vulnerability is caused by missing input validation in different XML parameters. This vulnerability could be exploited to inject and execute arbitrary shell commands. On different devices wget is preinstalled and you are able to upload and execute your malicious binary.
Mitigation:
Input validation should be implemented to prevent OS command injection.