CVE-2022-29778 Information

Description

UNSUPPORTED WHEN ASSIGNED D-Link DIR-890L 1.20b01 allows attackers to execute arbitrary code due to the hardcoded option Wake-On-Lan for the parameter ‘descriptor’ at SetVirtualServerSettings.php.

Reference

https://www.dlink.com/en/security-bulletin/ https://github.com/TyeYeah/DIR-890L-1.20-RCE

Share on: