Remote Code Execution Vulnerability in D-LINK DIR-818LW Router
CVE-2022-35619

9.8CRITICAL

Key Information:

Vendor
D-Link
Vendor
CVE Published:
3 August 2022

Summary

The D-LINK DIR-818LW A1:DIR818L_FW105b01 has been identified to have a remote code execution vulnerability through the function ssdpcgi_main. This flaw allows unauthorized users to execute arbitrary code remotely, potentially leading to unauthorized system access and control over the affected devices. Users are advised to review the security bulletin from D-Link and apply necessary patches to mitigate this risk.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.