An issue was discovered on D-Link DSL-3782 devices with firmware 1.01. An OS command injection vulnerability in Acl.asp allows a remote authenticated attacker to execute arbitrary OS commands via the ScrIPaddrEndTXT parameter.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-04-01T20:53:07

Updated: 2019-04-01T20:53:07

Reserved: 2018-10-04T00:00:00


Link: CVE-2018-17990

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-04-01T21:29:26.920

Modified: 2019-04-02T19:20:51.220


Link: CVE-2018-17990

JSON object: View

cve-icon Redhat Information

No data.

CWE