Arbitrary Device Reset Vulnerability in D-Link DIR-816 A2 1.10 B05

Arbitrary Device Reset Vulnerability in D-Link DIR-816 A2 1.10 B05

CVE-2021-31326 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

D-Link DIR-816 A2 1.10 B05 allows unauthenticated attackers to arbitrarily reset the device via a crafted tokenid parameter to /goform/form2Reboot.cgi.

Learn more about our Web Application Penetration Testing UK.