CVE-2023-43128

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
21/09/2023
Last modified:
25/09/2023

Description

D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection due to lax filtering of HTTP_ST parameters.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dlink:dir-806_firmware:100cnb11:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-806:a1:*:*:*:*:*:*:*