← Back to browse · API

CVE-2023-24331

Severity
CRITICAL
CVSS
9.8
EPSS
0.02122
Risk score
39.94
CISA KEV
No
PoC
No
Published
2024-02-21
Modified
2024-08-29
First seen
2026-08-07
Aliases
EUVD-2023-28387, GHSA-2MFW-8H6X-JGC4
Products
n/a:n/a n/a
Sources
euvd EUVD-2023-28387

Description

Command Injection vulnerability in D-Link Dir 816 with firmware version DIR-816_A2_v1.10CNB04 allows attackers to run arbitrary commands via the urlAdd parameter.

References