First published: Wed May 18 2022(Updated: )
An issue in the getcfg.php component of D-Link DIR816L_FW206b01 allows attackers to access the device via a crafted payload.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-816l Firmware | =206b01 | |
Dlink Dir-816l |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-28956 is an issue in the getcfg.php component of D-Link DIR816L_FW206b01 that allows attackers to access the device via a crafted payload.
The severity of CVE-2022-28956 is critical, with a CVSS score of 9.8.
Attackers can exploit CVE-2022-28956 by sending a crafted payload to the getcfg.php component of the D-Link DIR816L_FW206b01 device.
Yes, D-Link DIR816L_FW206b01 is the only affected software by CVE-2022-28956.
To fix CVE-2022-28956, it is recommended to update the firmware of the D-Link DIR816L_FW206b01 device to a version that has fixed the vulnerability.