// For flags

CVE-2019-17621

D-Link DIR-859 Router Command Execution Vulnerability

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

Yes
*KEV

Decision

-
*SSVC
Descriptions

The UPnP endpoint URL /gena.cgi in the D-Link DIR-859 Wi-Fi router 1.05 and 1.06B01 Beta01 allows an Unauthenticated remote attacker to execute system commands as root, by sending a specially crafted HTTP SUBSCRIBE request to the UPnP service when connecting to the local network.

La URL de /gena.cgi del endpoint UPnP en el router Wi-Fi D-Link DIR-859 versiones 1.05 y 1.06B01 Beta01, permite a un atacante remoto no autenticado ejecutar comandos del sistema como root, mediante el envío de una petición HTTP SUBSCRIBE especialmente diseñada en el servicio UPnP cuando se conecta a la red local.

D-Link DIR-859 Routers are vulnerable to OS command injection via the UPnP interface. The vulnerability exists in /gena.cgi (function genacgi_main() in /htdocs/cgibin), which is accessible without credentials.

D-Link DIR-859 router contains a command execution vulnerability in the UPnP endpoint URL, /gena.cgi. Exploitation allows an unauthenticated remote attacker to execute system commands as root by sending a specially crafted HTTP SUBSCRIBE request to the UPnP service when connecting to the local network.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2019-10-16 CVE Reserved
  • 2019-12-30 CVE Published
  • 2022-07-20 First Exploit
  • 2023-06-29 Exploited in Wild
  • 2023-07-20 KEV Due Date
  • 2024-08-05 CVE Updated
  • 2024-11-20 EPSS Updated
CWE
  • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Dlink
Search vendor "Dlink"
Dir-859 Firmware
Search vendor "Dlink" for product "Dir-859 Firmware"
<= 1.05b03
Search vendor "Dlink" for product "Dir-859 Firmware" and version " <= 1.05b03"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-859
Search vendor "Dlink" for product "Dir-859"
--
Safe
Dlink
Search vendor "Dlink"
Dir-859 Firmware
Search vendor "Dlink" for product "Dir-859 Firmware"
1.06b01
Search vendor "Dlink" for product "Dir-859 Firmware" and version "1.06b01"
beta1
Affected
in Dlink
Search vendor "Dlink"
Dir-859
Search vendor "Dlink" for product "Dir-859"
--
Safe
Dlink
Search vendor "Dlink"
Dir-822 Firmware
Search vendor "Dlink" for product "Dir-822 Firmware"
<= 2.03b01
Search vendor "Dlink" for product "Dir-822 Firmware" and version " <= 2.03b01"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-822
Search vendor "Dlink" for product "Dir-822"
--
Safe
Dlink
Search vendor "Dlink"
Dir-822 Firmware
Search vendor "Dlink" for product "Dir-822 Firmware"
<= 3.12b04
Search vendor "Dlink" for product "Dir-822 Firmware" and version " <= 3.12b04"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-822
Search vendor "Dlink" for product "Dir-822"
--
Safe
Dlink
Search vendor "Dlink"
Dir-823 Firmware
Search vendor "Dlink" for product "Dir-823 Firmware"
<= 1.00b06
Search vendor "Dlink" for product "Dir-823 Firmware" and version " <= 1.00b06"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-823
Search vendor "Dlink" for product "Dir-823"
--
Safe
Dlink
Search vendor "Dlink"
Dir-823 Firmware
Search vendor "Dlink" for product "Dir-823 Firmware"
1.00b06
Search vendor "Dlink" for product "Dir-823 Firmware" and version "1.00b06"
beta
Affected
in Dlink
Search vendor "Dlink"
Dir-823
Search vendor "Dlink" for product "Dir-823"
--
Safe
Dlink
Search vendor "Dlink"
Dir-865l Firmware
Search vendor "Dlink" for product "Dir-865l Firmware"
<= 1.07b01
Search vendor "Dlink" for product "Dir-865l Firmware" and version " <= 1.07b01"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-865l
Search vendor "Dlink" for product "Dir-865l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-868l Firmware
Search vendor "Dlink" for product "Dir-868l Firmware"
<= 1.12b04
Search vendor "Dlink" for product "Dir-868l Firmware" and version " <= 1.12b04"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-868l
Search vendor "Dlink" for product "Dir-868l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-868l Firmware
Search vendor "Dlink" for product "Dir-868l Firmware"
<= 2.05b02
Search vendor "Dlink" for product "Dir-868l Firmware" and version " <= 2.05b02"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-868l
Search vendor "Dlink" for product "Dir-868l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-869 Firmware
Search vendor "Dlink" for product "Dir-869 Firmware"
<= 1.03b02
Search vendor "Dlink" for product "Dir-869 Firmware" and version " <= 1.03b02"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-869
Search vendor "Dlink" for product "Dir-869"
--
Safe
Dlink
Search vendor "Dlink"
Dir-869 Firmware
Search vendor "Dlink" for product "Dir-869 Firmware"
1.03b02
Search vendor "Dlink" for product "Dir-869 Firmware" and version "1.03b02"
beta02
Affected
in Dlink
Search vendor "Dlink"
Dir-869
Search vendor "Dlink" for product "Dir-869"
--
Safe
Dlink
Search vendor "Dlink"
Dir-880l Firmware
Search vendor "Dlink" for product "Dir-880l Firmware"
<= 1.08b04
Search vendor "Dlink" for product "Dir-880l Firmware" and version " <= 1.08b04"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-880l
Search vendor "Dlink" for product "Dir-880l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-890l Firmware
Search vendor "Dlink" for product "Dir-890l Firmware"
<= 1.11b01
Search vendor "Dlink" for product "Dir-890l Firmware" and version " <= 1.11b01"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-890l
Search vendor "Dlink" for product "Dir-890l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-890l Firmware
Search vendor "Dlink" for product "Dir-890l Firmware"
1.11b01
Search vendor "Dlink" for product "Dir-890l Firmware" and version "1.11b01"
beta01
Affected
in Dlink
Search vendor "Dlink"
Dir-890l
Search vendor "Dlink" for product "Dir-890l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-890r Firmware
Search vendor "Dlink" for product "Dir-890r Firmware"
<= 1.11b01
Search vendor "Dlink" for product "Dir-890r Firmware" and version " <= 1.11b01"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-890r
Search vendor "Dlink" for product "Dir-890r"
--
Safe
Dlink
Search vendor "Dlink"
Dir-890r Firmware
Search vendor "Dlink" for product "Dir-890r Firmware"
1.11b01
Search vendor "Dlink" for product "Dir-890r Firmware" and version "1.11b01"
beta01
Affected
in Dlink
Search vendor "Dlink"
Dir-890r
Search vendor "Dlink" for product "Dir-890r"
--
Safe
Dlink
Search vendor "Dlink"
Dir-885l Firmware
Search vendor "Dlink" for product "Dir-885l Firmware"
<= 1.12b05
Search vendor "Dlink" for product "Dir-885l Firmware" and version " <= 1.12b05"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-885l
Search vendor "Dlink" for product "Dir-885l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-885r Firmware
Search vendor "Dlink" for product "Dir-885r Firmware"
<= 1.12b05
Search vendor "Dlink" for product "Dir-885r Firmware" and version " <= 1.12b05"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-885r
Search vendor "Dlink" for product "Dir-885r"
--
Safe
Dlink
Search vendor "Dlink"
Dir-895l Firmware
Search vendor "Dlink" for product "Dir-895l Firmware"
<= 1.12b10
Search vendor "Dlink" for product "Dir-895l Firmware" and version " <= 1.12b10"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-895l
Search vendor "Dlink" for product "Dir-895l"
--
Safe
Dlink
Search vendor "Dlink"
Dir-895r Firmware
Search vendor "Dlink" for product "Dir-895r Firmware"
<= 1.12b10
Search vendor "Dlink" for product "Dir-895r Firmware" and version " <= 1.12b10"
-
Affected
in Dlink
Search vendor "Dlink"
Dir-895r
Search vendor "Dlink" for product "Dir-895r"
--
Safe
Dlink
Search vendor "Dlink"
Dir-818lx Firmware
Search vendor "Dlink" for product "Dir-818lx Firmware"
--
Affected
in Dlink
Search vendor "Dlink"
Dir-818lx
Search vendor "Dlink" for product "Dir-818lx"
--
Safe