D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a command injection vulnerability in the function proxy_client.asp. This vulnerability allows attackers to execute arbitrary commands via the proxy_srv, proxy_srvport, proxy_lanip, proxy_lanport parameters.
- https://www.dlink.com/en/security-bulletin/
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Mr-xn/Penetration_Testing_POC
- https://github.com/pjqwudi/my_vuln