CVE-2021-46315
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Remote Command Execution (RCE) vulnerability exists in HNAP1/control/SetWizardConfig.php in D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin. Malicoius users can use this vulnerability to use "\ " or backticks in the shell metacharacters in the ssid0 or ssid1 parameters to cause arbitrary command execution. Since CVE-2019-17510 vulnerability has not been patched and improved www/hnap1/control/setwizardconfig.php, can also use line breaks and backquotes to bypass.
Se presenta una vulnerabilidad de Ejecución de Comandos Remota (RCE) en el archivo HNAP1/control/SetWizardConfig.php en el router D-Link DIR-846 DIR846A1_FW100A43.bin y DIR846enFW100A53DLA-Retail.bin. Los usuarios maliciosos pueden usar esta vulnerabilidad para usar "\ ~" o backticks en los metacaracteres del shell en los parámetros ssid0 o ssid1 para causar una ejecución de comandos arbitrarios. Desde que la vulnerabilidad CVE-2019-17510 no ha sido parcheada y mejorada www/hnap1/control/setwizardconfig.php, también puede usar saltos de línea y comillas traseras para eludirla
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-01-18 CVE Reserved
- 2022-02-17 CVE Published
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
- 2024-11-02 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://github.com/doudoudedi/DIR-846_Command_Injection/blob/main/DIR-846_Command_Injection1.md | 2024-08-04 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.dlink.com/en/security-bulletin | 2022-02-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dlink Search vendor "Dlink" | Dir-846 Firmware Search vendor "Dlink" for product "Dir-846 Firmware" | 100a43 Search vendor "Dlink" for product "Dir-846 Firmware" and version "100a43" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dir-846 Search vendor "Dlink" for product "Dir-846" | a1 Search vendor "Dlink" for product "Dir-846" and version "a1" | - |
Safe
|
Dlink Search vendor "Dlink" | Dir-846 Firmware Search vendor "Dlink" for product "Dir-846 Firmware" | 100a53dla Search vendor "Dlink" for product "Dir-846 Firmware" and version "100a53dla" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dir-846 Search vendor "Dlink" for product "Dir-846" | - | - |
Safe
|