Link | Resource |
---|---|
https://github.com/BuaaIOTTeam/Iot_Dlink_NAS/blob/main/DNS_cgi_create_playlist.md | Exploit |
https://github.com/BuaaIOTTeam/Iot_Dlink_NAS/blob/main/DNS_cgi_get_tracks_list.md | Exploit |
https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10383 | Vendor Advisory |
https://vuldb.com/?ctiid.275108 | Permissions Required VDB Entry |
https://vuldb.com/?id.275108 | Permissions Required VDB Entry |
https://vuldb.com/?submit.391669 | Third Party Advisory VDB Entry |
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
AND |
|
Configuration 16 (hide)
AND |
|
Configuration 17 (hide)
AND |
|
Configuration 18 (hide)
AND |
|
Configuration 19 (hide)
AND |
|
Configuration 20 (hide)
AND |
|
20 Aug 2024, 16:20
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 9.8 |
First Time |
Dell dns-1100-4 Firmware
Dell dns-315l Firmware Dell dnr-322l Firmware Dell dnr-326 Dell dns-343 Firmware Dell dns-1550-04 Dell dns-325 Dell dns-345 Firmware Dell dns-320lw Firmware Dell dns-340l Dell dns-320l Firmware Dell dns-323 Firmware Dell dns-340l Firmware Dell dns-325 Firmware Dell dns-327l Firmware Dell dns-1100-4 Dell dnr-322l Dell dnr-202l Dell Dell dns-320 Dell dns-345 Dell dns-1550-04 Firmware Dell dns-320l Dell dnr-202l Firmware Dell dnr-326 Firmware Dell dns-320 Firmware Dell dns-321 Firmware Dell dns-1200-05 Firmware Dell dns-315l Dell dns-726-4 Firmware Dell dns-120 Firmware Dell dns-326 Firmware Dell dns-1200-05 Dell dns-321 Dell dns-320lw Dell dns-323 Dell dns-343 Dell dns-326 Dell dns-327l Dell dns-120 Dell dns-726-4 |
|
CPE | cpe:2.3:h:dell:dnr-322l:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-340l_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dnr-322l_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-1100-4:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-120_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-340l:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-1200-05:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-320l_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dnr-326:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-325:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-327l_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-345_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-320lw:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-1550-04_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-120:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dnr-202l:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-343_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-323:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-726-4_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-326:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-726-4:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-320_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-315l_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-321:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-320l:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-320lw_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-323_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-321_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-315l:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-1550-04:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-326_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dnr-326_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-320:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dnr-202l_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-1100-4_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-327l:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-343:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-1200-05_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:dns-345:-:*:*:*:*:*:*:* cpe:2.3:o:dell:dns-325_firmware:-:*:*:*:*:*:*:* |
|
References | () https://github.com/BuaaIOTTeam/Iot_Dlink_NAS/blob/main/DNS_cgi_create_playlist.md - Exploit | |
References | () https://github.com/BuaaIOTTeam/Iot_Dlink_NAS/blob/main/DNS_cgi_get_tracks_list.md - Exploit | |
References | () https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10383 - Vendor Advisory | |
References | () https://vuldb.com/?ctiid.275108 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.275108 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?submit.391669 - Third Party Advisory, VDB Entry | |
Summary |
|
19 Aug 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Published : 2024-08-19 15:15
Updated : 2024-08-20 16:20
NVD link : CVE-2024-7922
Mitre link : CVE-2024-7922
CVE.ORG link : CVE-2024-7922
JSON object : View
dell
- dns-1550-04_firmware
- dns-315l_firmware
- dns-1100-4
- dns-321_firmware
- dns-320l_firmware
- dns-325
- dns-320
- dns-320_firmware
- dns-323
- dns-320l
- dns-326
- dns-340l_firmware
- dns-1550-04
- dns-323_firmware
- dns-345_firmware
- dns-120_firmware
- dns-345
- dnr-326
- dnr-322l
- dns-326_firmware
- dns-343
- dnr-326_firmware
- dns-340l
- dns-325_firmware
- dns-315l
- dns-343_firmware
- dns-320lw
- dns-120
- dnr-322l_firmware
- dnr-202l_firmware
- dns-321
- dns-726-4
- dns-327l
- dns-1100-4_firmware
- dns-1200-05
- dns-726-4_firmware
- dnr-202l
- dns-320lw_firmware
- dns-1200-05_firmware
- dns-327l_firmware
Improper Neutralization of Special Elements used in a Command ('Command Injection')