Command Injection Vulnerability in D-Link DAP-1650 gena.cgi Module

Command Injection Vulnerability in D-Link DAP-1650 gena.cgi Module

CVE-2024-23624 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

A command injection vulnerability exists in the gena.cgi module of D-Link DAP-1650 devices. An unauthenticated attacker can exploit this vulnerability to gain command execution on the device as root.

Learn more about our Web Application Penetration Testing UK.