Security Advisory

CVE-2018-20057

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-12-11 09:00:00
Last updated 2024-08-05 11:51:18
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 and DIR-605L Rev.B 2.12B1 devices. goform/formSysCmd allows remote authenticated users to execute arbitrary OS commands via the sysCmd POST parameter.