Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-37130
HistoryAug 31, 2022 - 11:15 p.m.

Command injection

2022-08-3123:15:00
PRIOn knowledge base
www.prio-n.com
1
d-link
command injection
vulnerability
/goform/diagnosis
setnum
snprintf
system execution
nvd

9.6 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

53.2%

In D-Link DIR-816 A2_v1.10CNB04, DIR-878 DIR_878_FW1.30B08.img a command injection vulnerability occurs in /goform/Diagnosis, after the condition is met, setnum will be spliced into v10 by snprintf, and the system will be executed, resulting in a command injection vulnerability

CPENameOperatorVersion
dir-816_firmwareeq1.10.0-cnb4

9.6 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

53.2%

Related for PRION:CVE-2022-37130