CVE-2022-28956
https://notcve.org/view.php?id=CVE-2022-28956
An issue in the getcfg.php component of D-Link DIR816L_FW206b01 allows attackers to access the device via a crafted payload. Un problema en el componente getcfg.php de D-Link DIR816L_FW206b01 permite a atacantes acceder al dispositivo por medio de una carga útil diseñada • https://github.com/shijin0925/IOT/blob/master/DIR816/4.md https://www.dlink.com/en/security-bulletin •
CVE-2022-28955
https://notcve.org/view.php?id=CVE-2022-28955
An access control issue in D-Link DIR816L_FW206b01 allows unauthenticated attackers to access folders folder_view.php and category_view.php. Un problema de control de acceso en D-Link DIR816L_FW206b01 permite a atacantes no autenticados acceder a las carpetas folder_view.php y category_view.php • https://github.com/shijin0925/IOT/blob/master/DIR816/1.md https://www.dlink.com/en/security-bulletin • CWE-287: Improper Authentication •