VYPR
Critical severity9.8NVD Advisory· Published Sep 14, 2023· Updated Jun 17, 2026

CVE-2023-39638

CVE-2023-39638

Description

D-LINK DIR-859 A1 1.05 and A1 1.06B01 Beta01 was discovered to contain a command injection vulnerability via the lxmldbc_system function at /htdocs/cgibin.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Dlink/DIR-859llm-create2 versions
    A1 1.05, A1 1.06B01 Beta01+ 1 more
    • (no CPE)range: A1 1.05, A1 1.06B01 Beta01
    • (no CPE)
  • cpe:2.3:o:dlink:dir-859_a1_firmware:1.05:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:dlink:dir-859_a1_firmware:1.05:*:*:*:*:*:*:*
    • cpe:2.3:o:dlink:dir-859_a1_firmware:1.06:beta01:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.