An issue exists on D-Link DIR-823G devices with firmware 1.02B03. There is a command injection in HNAP1 (exploitable with Authentication) via shell metacharacters in the IPAddress or Gateway field to SetStaticRouteSettings.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dlink dir-823g_firmware 1.02b03 |