CVE-2017-17020
DLINK DCS-5020L - Remote Code Execution (PoC)
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
On D-Link DCS-5009 devices with firmware 1.08.11 and earlier, DCS-5010 devices with firmware 1.14.09 and earlier, and DCS-5020L devices with firmware before 1.15.01, command injection in alphapd (binary responsible for running the camera's web server) allows remote authenticated attackers to execute code through sanitized /setSystemAdmin user input in the AdminID field being passed directly to a call to system.
En dispositivos D-Link DCS-5009 con firmware 1.08.11 y anterior, dispositivos DCS-5010 con firmware 1.14.09 y anterior y dispositivos DCS-5020L con firmware anterior a 1.15.01, la inyección de comandos en alphapd (binario responsable de ejecutar el servidor web de la cámara) permite que los atacantes remotos autenticados ejecuten código al pasar entradas saneadas de usuario /setSystemAdmin en el campo AdminID directamente a una llamada al sistema.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-11-27 CVE Reserved
- 2018-03-27 First Exploit
- 2018-05-01 CVE Published
- 2024-08-04 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
References (3)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/44580 | 2018-03-27 | |
https://www.fidusinfosec.com/dlink-dcs-5030l-remote-code-execution-cve-2017-17020 | 2024-08-05 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10084 | 2023-04-26 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dlink Search vendor "Dlink" | Dcs-5009 Firmware Search vendor "Dlink" for product "Dcs-5009 Firmware" | <= 1.08.11 Search vendor "Dlink" for product "Dcs-5009 Firmware" and version " <= 1.08.11" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dcs-5009 Search vendor "Dlink" for product "Dcs-5009" | - | - |
Safe
|
Dlink Search vendor "Dlink" | Dcs-5010 Firmware Search vendor "Dlink" for product "Dcs-5010 Firmware" | <= 1.14.09 Search vendor "Dlink" for product "Dcs-5010 Firmware" and version " <= 1.14.09" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dcs-5010 Search vendor "Dlink" for product "Dcs-5010" | - | - |
Safe
|
Dlink Search vendor "Dlink" | Dcs-5020l Firmware Search vendor "Dlink" for product "Dcs-5020l Firmware" | <= 1.14.09 Search vendor "Dlink" for product "Dcs-5020l Firmware" and version " <= 1.14.09" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dcs-5020l Search vendor "Dlink" for product "Dcs-5020l" | - | - |
Safe
|