D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a command injection vulnerability in the function version_upgrade.asp. This vulnerability allows attackers to execute arbitrary commands via the path parameter.
- https://www.dlink.com/en/security-bulletin/
- https://github.com/ARPSyndicate/cvemon
- https://github.com/pjqwudi/my_vuln