Vulnerabilities
Vulnerable Software
Dlink:  >> Dir-868l B1 Firmware  Security Vulnerabilities
A vulnerability was detected in D-Link DIR-860LB1 and DIR-868LB1 203b01/203b03. Affected is an unknown function of the component DHCP Daemon. The manipulation of the argument Hostname results in command injection. It is possible to launch the attack remotely. The exploit is now public and may be used.
CVSS Score
8.8
EPSS Score
0.004
Published
2025-12-14
There are some web interfaces without authentication requirements on D-Link DIR-868L B1-2.03 and DIR-817LW A1-1.04 routers. An attacker can get the router's username and password (and other information) via a DEVICE.ACCOUNT value for SERVICES in conjunction with AUTHORIZED_GROUP=1%0a to getcfg.php. This could be used to control the router remotely.
CVSS Score
9.8
EPSS Score
0.938
Published
2019-10-11


Contact Us

Shodan ® - All rights reserved