CVE-2013-5946
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD
Description
The runShellCmd function in systemCheck.htm in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DSR-500N, DSR-1000, and DSR-1000N with firmware before 1.08B77 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) "Ping or Trace an IP Address" or (2) "Perform a DNS Lookup" section.
Affected (71)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.08b51 | |
| All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.05b48 | |
| All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.08b39 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dsr 250n | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.08b51 | |
| All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.08b29 | |
| All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.08b39 | |
| All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.08b51 | |
| All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.08b51 | |
| All versions |
References (10)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.