First published: Thu Mar 05 2020(Updated: )
D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Upgrade Firmware functionality in the Web interface, using shell metacharacters in the admin.cgi?action=upgrade firmwareRestore or firmwareServerip parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dwl-2600ap Firmware | <=4.2.0.15 | |
Dlink Dwl-2600ap |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.