A command injection vulnerability exists in the gena.cgi module of D-Link DAP-1650 devices. An unauthenticated attacker can exploit this vulnerability to gain command execution on the device as root.
2024-01-26T00:15:10.397
2024-11-21T08:58:01.890
Modified
CVSSv3.1: 9.6 (CRITICAL)
AV:A/AC:L/Au:N/C:C/I:C/A:C
6.5
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dlink | dap-1650_firmware | - | Yes |
Hardware | dlink | dap-1650 | - | No |