First published: Fri May 18 2018(Updated: )
On D-Link DIR-550A and DIR-604M devices through v2.10KR, a malicious user can forge an HTTP request to inject operating system commands that can be executed on the device with higher privileges, aka remote code execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-link Dir-550a Firmware | <=2.10kr | |
Dlink Dir-550a | ||
D-link Dir-604m Firmware | <=2.10kr | |
Dlink Dir-604m |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.