AI Score
Confidence
Low
EPSS
Percentile
99.8%
SSVC
Exploitation
active
Automatable
no
Technical Impact
total
The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP interface.
[
{
"cpes": [
"cpe:2.3:h:dlink:dir-645:*:*:*:*:*:*:*:*"
],
"vendor": "dlink",
"product": "dir-645",
"versions": [
{
"status": "affected",
"version": "0",
"versionType": "custom",
"lessThanOrEqual": "1.04b12"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:dlink:dir-645_firmware:1.03:*:*:*:*:*:*:*"
],
"vendor": "dlink",
"product": "dir-645_firmware",
"versions": [
{
"status": "affected",
"version": "1.03",
"versionType": "custom",
"lessThanOrEqual": "1.04b12"
}
],
"defaultStatus": "unknown"
}
]