CVE-2022-40946
DLink DIR 819 A1 - Denial of Service
Severity Score
7.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
3
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
On D-Link DIR-819 Firmware Version 1.06 Hardware Version A1 devices, it is possible to trigger a Denial of Service via the sys_token parameter in a cgi-bin/webproc?getpage=html/index.html request.
D-Link DIR 819 A1 suffers from a denial of service vulnerability.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-09-19 CVE Reserved
- 2023-03-25 First Exploit
- 2023-03-27 CVE Published
- 2024-08-03 CVE Updated
- 2024-11-21 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://www.dlink.com/en/security-bulletin | Product |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/51053 | 2023-03-25 | |
http://packetstormsecurity.com/files/171484/D-Link-DIR-819-A1-Denial-Of-Service.html | 2024-08-03 | |
https://github.com/whokilleddb/dlink-dir-819-dos | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dlink Search vendor "Dlink" | Dir-819 Firmware Search vendor "Dlink" for product "Dir-819 Firmware" | 1.06 Search vendor "Dlink" for product "Dir-819 Firmware" and version "1.06" | - |
Affected
| in | Dlink Search vendor "Dlink" | Dir-819 Search vendor "Dlink" for product "Dir-819" | a1 Search vendor "Dlink" for product "Dir-819" and version "a1" | - |
Safe
|