Vulnerability Details CVE-2020-18568
The D-Link DSR-250 (3.14) DSR-1000N (2.11B201) UPnP service contains a command injection vulnerability, which can cause remote command execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.443
EPSS Ranking 97.4%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-18568
-
cpe:2.3:h:dlink:dsr-1000n:-
-
cpe:2.3:h:dlink:dsr-250:-
-
cpe:2.3:o:dlink:dsr-1000n_firmware:2.11b201
-
cpe:2.3:o:dlink:dsr-250_firmware:3.14