cbcvebase.
CVE-2023-24762
published 2023-03-13

CVE-2023-24762: OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands via a crafted LocalIPAddress parameter…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands via a crafted LocalIPAddress parameter for the SetVirtualServerSettings to HNAP1.

Affected

1 ranges
VendorProductVersion rangeFixed in
dlinkdir-867_firmware