ZeroHour

CVE-2022-26670

CVSS 3.1
8.8 high
EPSS
2%p74
Published
()
Modified
Description

D-Link DIR-878 has inadequate filtering for special characters in the webpage input field. An unauthenticated LAN attacker can perform command injection attack to execute arbitrary system commands to control the system or disrupt service.

Vendors
dlink
Products
dir-878 firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.