Command Injection Vulnerability in D-Link DIR-815 Router Firmware
CVE-2024-22651
9.8CRITICAL
What is CVE-2024-22651?
A command injection vulnerability exists in the ssdpcgi_main function of the CGI binary in the firmware of D-Link DIR-815 routers, specifically in version 1.04. This loophole allows an attacker with network access to execute arbitrary commands on the affected system, potentially compromising the router's functionality and network security. It is crucial for users to update their firmware to mitigate this risk and improve overall security.