A command injection vulnerability exists in D-Link DAP-1650 devices when handling UPnP SUBSCRIBE messages. An unauthenticated attacker can exploit this vulnerability to gain command execution on the device as root.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dlink dap-1650_firmware - |