Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-24331


Command Injection vulnerability in D-Link Dir 816 with firmware version DIR-816_A2_v1.10CNB04 allows attackers to run arbitrary commands via the urlAdd parameter.


Published

2024-02-21T21:15:08.567

Last Modified

2025-03-25T16:49:07.787

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-77

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dlink dir-816_firmware 1.10nb04 Yes
Hardware dlink dir-816 a2 No

References