9.8
CVSSv3

CVE-2021-44880

Published: 04/02/2022 Updated: 12/07/2022
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

D-Link devices DIR_878 DIR_878_FW1.30B08_Hotfix_02 and DIR_882 DIR_882_FW1.30B06_Hotfix_02 were discovered to contain a command injection vulnerability in the system function. This vulnerability allows malicious users to execute arbitrary commands via a crafted HNAP1 POST request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dlink dir-878_firmware 1.30b08

dlink dir-878_firmware

dlink dir-882_firmware

dlink dir-882_firmware 1.30b06