D-Link DIR-816
cpe:2.3:h:d-link:dir-816:*:*:*:*:*:*:*, +12 more
An access control vulnerability has been identified in the D-Link DIR-816 router, specifically in the firmware version 816A2_FWv1.10CNB05_R1B011D88210. This vulnerability allows unauthenticated attackers to manipulate the WAN service settings of the device by sending a crafted POST request. The issue arises in the form2Wan.cgi component, where inadequate access controls permit unauthorized modifications to critical network configurations.
Exploitation of this vulnerability allows for unauthorized changes to the WAN service settings of the affected router, potentially leading to unauthorized network access or disruption of service.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.