D-Link DIR-816
cpe:2.3:h:d-link:dir-816:*:*:*:*:*:*:*, +7 more
- <= 1.10CNB05_R1B011D88210
An access control vulnerability has been identified in the D-Link DIR-816 router, specifically in the component form2alg.cgi. This vulnerability allows unauthenticated attackers to manipulate the AGL service of the device by sending a crafted POST request.
Exploitation of this vulnerability could lead to unauthorized changes to the AGL service on the affected device.
To reproduce this vulnerability, send a POST request to the form2alg.cgi component of the D-Link DIR-816 router. The request must be crafted to manipulate the AGL service, taking advantage of the lack of authentication checks.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.