CVE-2021-46228: Command Injection
D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a command injection vulnerability in the function httpddebug.asp. This vulnerability allows attackers to execute arbitrary commands via the time parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-46228?
CVE-2021-46228 has a severity rating that indicates it can allow remote code execution, making it critical.
How do I fix CVE-2021-46228?
To fix CVE-2021-46228, it is recommended to update the D-Link device to the latest firmware version beyond 21.04.09E1.
What devices are affected by CVE-2021-46228?
CVE-2021-46228 specifically affects the D-Link DI-7200GV2 device running firmware version up to and including 21.04.09E1.
What type of vulnerability is CVE-2021-46228?
CVE-2021-46228 is classified as a command injection vulnerability that enables execution of arbitrary commands.
Is CVE-2021-46228 exploited in the wild?
As of the latest information, there have been no confirmed reports of active exploitation of CVE-2021-46228.