Security Advisory

CVE-2018-17787

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-10-02 18:00:00
Last updated 2024-08-05 10:54:10
Assigner mitre
State PUBLISHED

Description

On D-Link DIR-823G devices, the GoAhead configuration allows /HNAP1 Command Injection via shell metacharacters in the POST data, because this data is sent directly to the "system" library function.