CVE List

CVE-2020-25367

Severe 9.8

A command injection vulnerability was discovered in the HNAP1 protocol in D-Link DIR-823G devices with firmware V1.0.2B05. An attacker is able to execute arbitrary web scripts via shell metacharacters in the Captcha field to Login.

Published November 4, 2021.

Affected software

Get alerts for Dlink Dir-823g Firmware

Reference links