Command Injection Vulnerability in D-Link DVG-G5402SP
CVE-2022-44928
9.8CRITICAL
Summary
The D-Link DVG-G5402SP device was identified to have a command injection vulnerability that can be exploited through the Maintenance function, potentially allowing an attacker to execute arbitrary commands on the device. This issue poses significant risks to network security and data integrity, making it essential for users to apply necessary patches and updates to mitigate any potential exploitation.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved