VYPR
High severity8.8NVD Advisory· Published Apr 12, 2021· Updated Jun 17, 2026

CVE-2021-29379

CVE-2021-29379

Description

An issue was discovered on D-Link DIR-802 A1 devices through 1.00b05. Universal Plug and Play (UPnP) is enabled by default on port 1900. An attacker can perform command injection by injecting a payload into the Search Target (ST) field of the SSDP M-SEARCH discover packet. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:o:dlink:dir-802_firmware:*:*:*:*:*:*:*:*
    Range: <=1.00b05
  • Dlink/DIR-802cpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <=1.00b05

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.