First published: Thu Jul 11 2019(Updated: )
D-Link DIR-655 C devices before 3.02B05 BETA03 allow remote attackers to execute arbitrary commands via shell metacharacters in the online_firmware_check.cgi check_fw_url parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-655 Firmware | =3.02b05 | |
Dlink Dir-655 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this D-Link DIR-655 C vulnerability is CVE-2019-13561.
The severity of CVE-2019-13561 is critical with a severity value of 9.8.
Remote attackers can exploit CVE-2019-13561 by executing arbitrary commands using shell metacharacters in the online_firmware_check.cgi check_fw_url parameter.
D-Link DIR-655 C devices before 3.02B05 BETA03 are affected by CVE-2019-13561.
To fix CVE-2019-13561, you should update your D-Link DIR-655 C device firmware to version 3.02B05 BETA03 or later.