First published: Wed Mar 23 2022(Updated: )
D-Link DIR-816 A2 1.10 B05 allows unauthenticated attackers to arbitrarily reset the device via a crafted tokenid parameter to /goform/form2Reboot.cgi.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-816 Firmware | =1.10cnb05 | |
Dlink DIR-816 | =a2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-31326 is a vulnerability that allows unauthenticated attackers to arbitrarily reset the D-Link DIR-816 A2 1.10 B05 device.
CVE-2021-31326 has a severity level of critical with a CVSS score of 9.8.
The D-Link DIR-816 firmware version 1.10cnb05 is affected by CVE-2021-31326.
An attacker can reset the device by sending a crafted tokenid parameter to /goform/form2Reboot.cgi.
No, only the D-Link DIR-816 A2 devices with firmware version 1.10cnb05 are vulnerable to CVE-2021-31326.