D-Link DIR-802是中国台湾友讯(D-Link)公司的一个无线路由器。 D-Link DIR-802 A1 1.00b05 存在操作系统命令注入漏洞,该漏洞源于系统默认情况下在1900端口开启了通用即插即用功能。攻击者可利用该漏洞通过向SSDP M-SEARCH discover报文的ST (Search Target)字段中注入有效载荷来执行命令注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E7%BD%91%E7%BB%9C%E8%AE%BE%E5%A4%87%E6%BC%8F%E6%B4%9E/D-Link%20DIR-802%20%E5%91%BD%E4%BB%A4%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E%20CVE-2021-29379.md | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-23371 | 7.5 HIGH | Regular Expression Denial of Service (ReDoS) |
| CVE-2021-23370 | 7.5 HIGH | Prototype Pollution |
| CVE-2021-23369 | 5.6 MEDIUM | Remote Code Execution (RCE) |
| CVE-2021-23368 | 5.3 MEDIUM | Regular Expression Denial of Service (ReDoS) |
| CVE-2021-3125 | TP-Link TL-XDR 安全漏洞 | |
| CVE-2020-24285 | Intelbras TIP 200 信息泄露漏洞 | |
| CVE-2020-28872 | jonfinley Monitorr 安全漏洞 | |
| CVE-2021-25926 | Echel0n SiCKRAGE 跨站脚本漏洞 | |
| CVE-2021-25925 | Echel0n SiCKRAGE 跨站脚本漏洞 | |
| CVE-2021-27486 | FATEK Automation WinProladder 数字错误漏洞 | |
| CVE-2021-23270 | Michael gargoyle 安全漏洞 | |
| CVE-2021-30030 | Saad Irfan RemoteClinic 跨站脚本漏洞 | |
| CVE-2021-3128 | ASUS RT-AX3000 安全漏洞 | |
| CVE-2021-29302 | TP-Link TL-WR802N 缓冲区错误漏洞 | |
| CVE-2020-15390 | Pegasystem PEGA Platform 安全漏洞 | |
| CVE-2021-29357 | OutSystems Platform 代码问题漏洞 | |
| CVE-2019-15059 | Liberty lisPBX 安全漏洞 | |
| CVE-2021-3163 | Quill 跨站脚本漏洞 | |
| CVE-2021-30039 | Saad Irfan RemoteClinic 跨站脚本漏洞 | |
| CVE-2021-30042 | Saad Irfan RemoteClinic 跨站脚本漏洞 |
Showing top 20 of 23 CVEs. View all on vendor page → →
No comments yet