D-Link DIR-822+ V1.0.5 vulnerable to command injection
CVE-2024-33343
8.8HIGH
What is CVE-2024-33343?
The D-Link DIR-822+ V1.0.5 router has a command injection vulnerability in the ChgSambaUserSettings function of prog.cgi. This flaw enables remote attackers to execute arbitrary commands on the affected device through specially crafted requests, potentially compromising the integrity and security of the router. Proper safeguards and firmware updates are necessary to mitigate the risk associated with this vulnerability.