Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2012-6297

Command Injection vulnerability exists via a CSRF in DD-WRT 24-sp2 from specially crafted configuration values containing shell meta-characters, which could let a remote malicious user cause a Denial of Service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.0%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.3
Products affected by CVE-2012-6297
  • Dd-Wrt » Dd-Wrt » Version: 24
    cpe:2.3:o:dd-wrt:dd-wrt:24


Contact Us

Shodan ® - All rights reserved