CVE-2019-20501
45Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 90%
exploitation probability
90%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
D-Link DWL-2600AP 4.2.0.15 Rev A devices have an authenticated OS command injection vulnerability via the Upgrade Firmware functionality in the Web interface, using shell metacharacters in the admin.cgi?action=upgrade firmwareRestore or firmwareServerip parameter.
Affected products
n/a · n/apublic PoCs found — 1
cve_referencewww.exploit-db.com/exploits/46841unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.