Unrestricted File Upload Vulnerability in D-Link Central WiFi Manager

Unrestricted File Upload Vulnerability in D-Link Central WiFi Manager

CVE-2018-17442 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:P/A:P

An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. An unrestricted file upload vulnerability in the onUploadLogPic endpoint allows remote authenticated users to execute arbitrary PHP code.

Learn more about our User Device Pen Test.