cve/2020/CVE-2020-25368.md
2024-06-09 00:33:16 +00:00

749 B

CVE-2020-25368

Description

A command injection vulnerability was discovered in the HNAP1 protocol in D-Link DIR-823G devices with firmware V1.0.2B05. An attacker is able to execute arbitrary web scripts via shell metacharacters in the PrivateLogin field to Login.

POC

Reference

Github

No PoCs found on GitHub currently.