First published: Sun Oct 16 2011(Updated: )
recorder_test.cgi on the D-Link DCS-2121 camera with firmware 1.04 allows remote attackers to execute arbitrary commands via shell metacharacters in the Password field, related to a "semicolon injection" vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
dlink DCS-2121 firmware | =1.04 | |
dlink DCS-2121 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4964 is classified as a high severity vulnerability due to the potential for remote command execution.
To fix CVE-2010-4964, update the D-Link DCS-2121 camera firmware to the latest version that addresses this vulnerability.
Users of the D-Link DCS-2121 camera running firmware version 1.04 are affected by CVE-2010-4964.
CVE-2010-4964 is classified as a command injection vulnerability related to semicolon injection in the Password field.
Yes, CVE-2010-4964 can be exploited remotely by attackers to execute arbitrary commands on the affected device.