First published: Mon Jun 10 2019(Updated: )
An issue was discovered on D-Link DIR-818LW devices from 2.05.B03 to 2.06B01 BETA. There is a command injection in HNAP1 SetWanSettings via an XML injection of the value of the Gateway key.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-818lw Firmware | =2.05.b03 | |
Dlink Dir-818lw Firmware | =2.06b01-beta | |
Dlink Dir-818lw |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-12787 is a vulnerability discovered on D-Link DIR-818LW devices, allowing command injection in HNAP1 SetWanSettings via an XML injection of the value of the Gateway key.
CVE-2019-12787 has a severity score of 8.8 (High).
Software versions 2.05.B03 to 2.06B01 BETA of D-Link DIR-818LW devices are affected.
It is recommended to update the D-Link DIR-818LW firmware to a version that fixes the vulnerability.
You can find more information about CVE-2019-12787 on the GitHub page of TeamSeri0us.