D-Link DIR-816
cpe:2.3:h:d-link:dir-816:*:*:*:*:*:*:*, +3 more
An access control vulnerability has been identified in the D-Link DIR-816 router, specifically in the firmware version 816A2_FWv1.10CNB05_R1B011D88210. This vulnerability allows unauthenticated attackers to manipulate the 2.4G and 5G repeater services of the device by sending a crafted POST request.
Exploitation of this vulnerability allows for unauthorized modification of the device's repeater service settings.
To reproduce this vulnerability, send a POST request to the 'form2RepeaterSetup.cgi' component of the D-Link DIR-816 router running the vulnerable firmware. The request must be crafted to include the desired changes to the 2.4G and 5G repeater services.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.