A vulnerability was determined in D-Link DIR-820LW 2.03. Affected is the function ssdpcgi_main of the component SSDP. Executing a manipulation can lead to os command injection.
The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Dlink Dir-820lw_Firmware
cpe:2.3:o:dlink:dir-820lw_firmware:2.03:*:*:*:*:*:*:*
|
— | — |
|
Dlink Dir-820lw
cpe:2.3:h:dlink:dir-820lw:-:*:*:*:*:*:*:*
|
— | — |