← Back to CVE List
Vulnerability Intelligence Report

CVE-2022-1262

A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary commands as root.

No Active Exploit Signals
CVSS Base Score
7.8
HIGH
EPSS Probability:2.23%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
dlink dir-1360_firmware 1.02b03, 1.03b02, 1.11b04, 1.00b15, 1.01b03
dlink dir-1360 a1
dlink dir-1760_firmware 1.01b04, 1.11b03
dlink dir-1760 all
dlink dir-1960_firmware 1.02b01, 1.03b03, 1.11b03
dlink dir-1960 a1
dlink dir-2640_firmware 1.11b02, 1.01b04
dlink dir-2640 a1
dlink dir-2660_firmware 1.04b03, 1.11b04, 1.00b14, 1.01b03, 1.02b01, 1.03b04
dlink dir-2660 a1
dlink dir-3040_firmware 1.13b03, 1.11b02, 1.12b01, 1.20b03
dlink dir-3040 a1
dlink dir-3060_firmware 1.00b12, 1.11b04, 1.01b07, 1.02b03, 1.11b02
dlink dir-3060 a1
dlink dir-867_firmware 1.20b10, 1.10b04, 1.30b07
dlink dir-867 a1
dlink dir-878_firmware 1.20b05, 1.30b08
dlink dir-878 all
dlink dir-882_firmware 1.20b06, 1.30b06, 1.30b10
dlink dir-882 a1

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
2.233%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityTenable Network Security, Inc. · Vendor · USA
Reserved2022-04-06T00:00:00
Published2022-04-11T19:38:13
Last Updated2024-08-02T23:55:24

LINK COPIED TO CLIPBOARD