First published: Thu Sep 08 2022(Updated: )
A local file inclusion (LFI) vulnerability in D-Link DIR 819 v1.06 allows attackers to cause a Denial of Service (DoS) or access sensitive server information via manipulation of the getpage parameter in a crafted web request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-819 Firmware | =1.06 | |
Dlink Dir-819 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38258 is considered a high severity vulnerability as it allows local file inclusion which could lead to Denial of Service and exposure of sensitive information.
To fix CVE-2022-38258, it is recommended to update the D-Link DIR-819 to the latest firmware version that addresses this vulnerability.
CVE-2022-38258 can cause a Denial of Service (DoS) or allow unauthorized access to sensitive server information.
CVE-2022-38258 specifically affects D-Link DIR-819 devices running firmware version 1.06.
Exploiting CVE-2022-38258 may be relatively straightforward for attackers with knowledge of manipulating web requests to the vulnerable parameter.