First published: Thu Feb 02 2023(Updated: )
D-Link DIR-846 Firmware FW100A53DBR was discovered to contain a remote command execution (RCE) vulnerability via the lan(0)_dhcps_staticlist parameter. This vulnerability is exploited via a crafted POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-846 Firmware | =100a53dbr | |
Dlink Dir-846 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-46552 is a remote command execution (RCE) vulnerability found in D-Link DIR-846 Firmware FW100A53DBR.
CVE-2022-46552 allows remote attackers to execute arbitrary commands on the affected device.
CVE-2022-46552 has a severity rating of 8.8 (high).
CVE-2022-46552 is exploited through a crafted POST request targeting the lan(0)_dhcps_staticlist parameter.
To mitigate the risk of CVE-2022-46552, users should update to a patched version of D-Link DIR-846 Firmware FW100A53DBR provided by the vendor.