Command Injection Vulnerability in D-Link Router Firmware
CVE-2022-48107
9.8CRITICAL
What is CVE-2022-48107?
The D-Link DIR-878 router firmware has been found to have a command injection vulnerability located in the /setnetworksettings/IPAddress component. This flaw allows attackers to execute unauthorized commands, potentially leading to a privilege escalation to root. By sending a specially crafted payload, attackers can manipulate the underlying system, posing significant security risks to the affected devices.