D-Link DSL-2750B devices before 1.05 allow remote unauthenticated command injection via the login.cgi cli parameter, as exploited in the wild in 2016 through 2022.
History

Mon, 03 Feb 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2024-01-08'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-02-03T14:35:14.117Z

Reserved: 2022-10-19T00:00:00.000Z

Link: CVE-2016-20017

cve-icon Vulnrichment

Updated: 2024-08-06T03:47:35.074Z

cve-icon NVD

Status : Analyzed

Published: 2022-10-19T05:15:08.817

Modified: 2025-03-14T20:00:42.390

Link: CVE-2016-20017

cve-icon Redhat

No data.