CVE-2020-25079
Beschrijving NL
D-Link DCS-2530L- en DCS-2670L-apparaten bevatten een kwetsbaarheid voor opdrachtinjectie in de cgi-bin/ddns_enc.cgi. De getroffen producten kunnen end-of-life (EoL) en/of end-of-service (EoS) zijn. Gebruikers moeten stoppen met het gebruik van het product.
Vereiste actie: pas mitigaties toe volgens de instructies van de leverancier, volg de toepasselijke BOD 22-01-richtlijnen voor cloudservices of stop het gebruik van het product als er geen mitigaties beschikbaar zijn.
Origineel (Engels) tonen
D-Link DCS-2530L and DCS-2670L devices contains a command injection vulnerability in the cgi-bin/ddns_enc.cgi. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.