An issue exists on D-Link DIR-823G devices with firmware V1.0.2B05. There is a command injection in HNAP1 (exploitable with Authentication) via shell metacharacters in the Username field to Login.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dlink dir-823g_firmware 1.0.2b05 |