A Remote Command Execution (RCE) vulnerability exists in all series H/W revisions D-link DIR-810L, DIR-820L/LW, DIR-826L, DIR-830L, and DIR-836L routers via the DDNS function in ncc2 binary file. Note: DIR-810L, DIR-820L, DIR-830L, DIR-826L, DIR-836L, all hardware revisions, have reached their End of Life ("EOL") /End of Service Life ("EOS") Life-Cycle and as such this issue will not be patched.
2022-02-17T21:15:07.737
2025-04-03T19:48:43.603
Analyzed
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dlink | dir-820l_firmware | - | Yes |
Hardware | dlink | dir-820l | - | No |
Operating System | dlink | dir-820lw_firmware | - | Yes |
Hardware | dlink | dir-820lw | - | No |
Operating System | dlink | dir-826l_firmware | - | Yes |
Hardware | dlink | dir-826l | - | No |
Operating System | dlink | dir-830l_firmware | - | Yes |
Hardware | dlink | dir-830l | - | No |
Operating System | dlink | dir-836l_firmware | - | Yes |
Hardware | dlink | dir-836l | - | No |
Operating System | dlink | dir-810l_firmware | - | Yes |
Hardware | dlink | dir-810l | - | No |