Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in D-Link DIR-806 devices. There is a command injection in function hnap_main, which calls system() without checking the parameter that can be controlled by user, and finally allows remote attackers to execute arbitrary shell commands with a special HTTP header.
CVSS Information
N/A
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
友讯 D-Link DIR-806 操作系统命令注入漏洞
Vulnerability Description
D-Link DIR-806是中国台湾友讯(D-Link)公司的一款无线路由器。 D-Link DIR-806中存在操作系统命令注入漏洞。远程攻击者可利用该漏洞执行任意的shell命令。
CVSS Information
N/A
Vulnerability Type
N/A