CVE-2024-44400

A vulnerability was discovered in DI_8400-16.07.26A1, which has been classified as critical. This issue affects the upgrade_filter_asp function in the upgrade_filter.asp file. Manipulation of the path parameter can lead to command injection.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:di-8400_firmware:16.07.26a1:*:*:*:*:*:*:*
cpe:2.3:h:dlink:di-8400:a1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-09-04 13:15

Updated : 2024-10-11 17:15


NVD link : CVE-2024-44400

Mitre link : CVE-2024-44400

CVE.ORG link : CVE-2024-44400


JSON object : View

Products Affected

dlink

  • di-8400_firmware
  • di-8400
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')