D-Link DIR-816
cpe:2.3:h:d-link:dir-816:*:*:*:*:*:*:*, +12 more
- 1.10CNB05_R1B011D88210
A critical vulnerability has been identified in the D-Link DIR-816 A2 router, specifically in version 1.10CNB05_R1B011D88210. The issue arises from improper access controls in the IP QoS Handler component, particularly within the file '/goform/form2IPQoSTcAdd'. This vulnerability allows for unauthorized access and manipulation, and can be exploited remotely.
Exploitation of this vulnerability could lead to unauthorized access and manipulation of the router's IP QoS settings.
The vulnerability can be reproduced by sending a request to the '/goform/form2IPQoSTcAdd' endpoint. This request can be made remotely, and does not require any special privileges or user interaction.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.