Remote Command Execution Issue in D-Link Router Products
CVE-2021-46315
What is CVE-2021-46315?
A Remote Command Execution vulnerability exists in the HNAP1/control/SetWizardConfig.php file in specific firmware versions of D-Link DIR-846 routers. Malicious users can exploit this vulnerability by inserting backticks or using specific shell metacharacters within the ssid0 or ssid1 parameters. This exploitation could lead to arbitrary command execution on the device. The vulnerability remains exploitable due to a lack of proper patching for related past vulnerabilities, allowing attackers to bypass restrictions using line breaks and backquotes.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
EPSS Score
26% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved