cve/2018/CVE-2018-17787.md
2024-06-09 00:33:16 +00:00

680 B

CVE-2018-17787

Description

On D-Link DIR-823G devices, the GoAhead configuration allows /HNAP1 Command Injection via shell metacharacters in the POST data, because this data is sent directly to the "system" library function.

POC

Reference

Github

No PoCs found on GitHub currently.