CVE-2021-43474: Command Injection
Published Apr 7, 2022
·Updated
An Access Control vulnerability exists in D-Link DIR-823G REVA1 1.02B05 (Lastest) via any parameter in the HNAP1 function
Affected Software
2 affected components
Dlink Dir-823g Firmware=1.02b05
Dlink Dir-823g
Event History
Apr 7, 2022
CVE Published
via MITRE·09:02 PM
Data Sourced
via MITRE·09:02 PM
Description
Frequently Asked Questions
1
What is CVE-2021-43474?
CVE-2021-43474 is an Access Control vulnerability that exists in D-Link DIR-823G REVA1 1.02B05 (Lastest) via any parameter in the HNAP1 function.
2
How severe is CVE-2021-43474?
CVE-2021-43474 has a severity rating of 9.8, which is classified as critical.
3
Which software versions are affected by CVE-2021-43474?
The affected software version is D-Link DIR-823G REVA1 1.02B05 (Latest).
4
How can I fix CVE-2021-43474?
To fix CVE-2021-43474, update your D-Link DIR-823G firmware to the latest version available.
5
Where can I find more information about CVE-2021-43474?
For more information about CVE-2021-43474, you can refer to the following resources: [GitHub](https://github.com/sek1th/iot/blob/master/dir-823g_all.md) and [D-Link Security Bulletin](https://www.dlink.com/en/security-bulletin/).