CVE-2015-1187

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
21/09/2017
Last modified:
20/04/2025

Description

The ping tool in multiple D-Link and TRENDnet devices allow remote attackers to execute arbitrary code via the ping_addr parameter to ping.ccp.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dlink:dir-626l_firmware:1.04:b04:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-626l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-636l_firmware:1.04:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-636l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-808l_firmware:1.03:b05:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-808l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-810l_firmware:1.01:b04:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-810l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-810l_firmware:2.02:b01:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-810l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-820l_firmware:1.02:b10:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-820l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-820l_firmware:1.05:b03:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-820l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-820l_firmware:2.01:b02:*:*:*:*:*:*