D-Link DAR-7000是中国友讯(D-Link)公司的一款上网行为审计网关。 D-Link DAR-7000和DAR-8000存在代码问题漏洞,该漏洞源于文件/useratte/web的参数file_upload存在任意文件上传漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-5146 | 6.3 MEDIUM | D-Link DAR-7000/DAR-8000 updatelib.php unrestricted upload |
| CVE-2023-5147 | 6.3 MEDIUM | D-Link DAR-7000 updateos.php unrestricted upload |
| CVE-2023-5148 | 6.3 MEDIUM | D-Link DAR-7000/DAR-8000 uploadfile.php unrestricted upload |
| CVE-2023-5149 | 6.3 MEDIUM | D-Link DAR-7000 userattestation.php unrestricted upload |
| CVE-2023-5151 | 6.3 MEDIUM | D-Link DAR-8000 autheditpwd.php sql injection |
| CVE-2023-5152 | 6.3 MEDIUM | D-Link DAR-7000/DAR-8000 importexport.php sql injection |
| CVE-2023-5153 | 6.3 MEDIUM | D-Link DAR-8000 querysql.php sql injection |
| CVE-2023-5154 | 6.3 MEDIUM | D-Link DAR-8000 changelogo.php unrestricted upload |
No comments yet