CVE-2019-13481

An issue was discovered on D-Link DIR-818LW devices with firmware 2.06betab01. There is a command injection in HNAP1 (exploitable with Authentication) via shell metacharacters in the MTU field to SetWanSettings.
References
Link Resource
https://github.com/TeamSeri0us/pocs/blob/master/iot/dlink/dir818-3.pdf Exploit Third Party Advisory
http://www.securityfocus.com/bid/109131 Third Party Advisory VDB Entry
Configurations

Configuration 1


Information

Published : 2019-07-10 08:15

Updated : 2021-04-23 04:55


NVD link : CVE-2019-13481

Mitre link : CVE-2019-13481

Products Affected
CWE