D-Link DAR-7000 SQL Injection (CVE-2023-5322; CVE-2023-6581)

Related Vulnerabilities: CVE-2023-5322   CVE-2023-6581  

Check Point Reference: CPAI-2023-1474 Date Published: 22 Jan 2024 Severity: Critical Last Updated: Monday 22 January, 2024 Source: Industry Reference:CVE-2023-5322
CVE-2023-6581
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? D-Link DAR-7000 20231126 and prior
D-Link DAR-7000 20151231 and prior Vulnerability Description An SQL injection vulnerability exists in D-Link DAR-7000. The vulnerability is due to improper input. A successful attack may result in arbitrary SQL command execution against the database on the target server.