CVE-2021-46227: Command Injection
D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a command injection vulnerability in the function proxyclient.asp. This vulnerability allows attackers to execute arbitrary commands via the proxysrv, proxysrvport, proxylanip, proxylanport parameters.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-46227?
CVE-2021-46227 is considered a critical vulnerability due to its potential for remote command execution.
How do I fix CVE-2021-46227?
To fix CVE-2021-46227, update the D-Link DI-7200GV2 firmware to version 21.04.10 or later.
What devices are affected by CVE-2021-46227?
CVE-2021-46227 affects D-Link DI-7200GV2 devices running firmware version 21.04.09E1 and older.
What kind of attacks can exploit CVE-2021-46227?
CVE-2021-46227 can be exploited by attackers to execute arbitrary commands on the vulnerable device.
How can I determine if my D-Link DI-7200GV2 is vulnerable to CVE-2021-46227?
You can determine vulnerability by checking if your D-Link DI-7200GV2 is running firmware version 21.04.09E1 or older.