VYPR

Dwl 2600ap Firmware

by Dlink

CVEs (4)

  • CVE-2019-20500HigKEVMar 5, 2020
    risk 0.73cvss 7.8epss 0.97

    D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Save Configuration functionality in the Web interface, using shell metacharacters in the admin.cgi?action=config_save configBackup or downloadServerip parameter.

  • CVE-2019-20501HigMar 5, 2020
    risk 0.61cvss 7.8epss 0.90

    D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Upgrade Firmware functionality in the Web interface, using shell metacharacters in the admin.cgi?action=upgrade firmwareRestore or firmwareServerip parameter.

  • CVE-2019-20499HigMar 5, 2020
    risk 0.61cvss 7.8epss 0.97

    D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Restore Configuration functionality in the Web interface, using shell metacharacters in the admin.cgi?action=config_restore configRestore or configServerip parameter.

  • CVE-2023-0127HigFeb 11, 2023
    risk 0.51cvss 7.8epss 0.02

    A command injection vulnerability in the firmware_update command, in the device's restricted telnet interface, allows an authenticated attacker to execute arbitrary commands as root.