CVE-2019-12767: OS Command Injection
Published Mar 21, 2020
·Updated
An issue was discovered on D-Link DAP-1650 devices before 1.04B02J65H Hot Fix. Attackers can execute arbitrary commands.
Affected Software
2 affected components
Dlink Dap-1650 Firmware<1.04b02_j65h
Dlink Dap-1650
Event History
Mar 21, 2020
CVE Published
via MITRE·12:16 AM
Data Sourced
via MITRE·12:16 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-12767?
CVE-2019-12767 is considered a high severity vulnerability due to the potential for arbitrary command execution by attackers.
2
How do I fix CVE-2019-12767?
To fix CVE-2019-12767, update the D-Link DAP-1650 firmware to version 1.04B02_J65H or later.
3
What devices are affected by CVE-2019-12767?
CVE-2019-12767 affects D-Link DAP-1650 devices running firmware versions before 1.04B02_J65H.
4
Can CVE-2019-12767 lead to unauthorized access?
Yes, CVE-2019-12767 can allow attackers to execute arbitrary commands, potentially leading to unauthorized access to the device.
5
Is there a workaround for CVE-2019-12767?
There are no official workarounds for CVE-2019-12767; the recommended solution is to update the firmware.