CVE-2013-5946

The runShellCmd function in systemCheck.htm in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DSR-500N, DSR-1000, and DSR-1000N with firmware before 1.08B77 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) "Ping or Trace an IP Address" or (2) "Perform a DNS Lookup" section.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
VendorProductVersion
dlinkdsr-500_firmware
𝑥
≤ 1.08b51
dlinkdsr-500_firmware
1.02b11:b11
dlinkdsr-500_firmware
1.02b25:b25
dlinkdsr-500_firmware
1.03b12:b12
dlinkdsr-500_firmware
1.03b23:b23
dlinkdsr-500_firmware
1.03b27:b27
dlinkdsr-500_firmware
1.03b36:b36
dlinkdsr-500_firmware
1.03b43:b43
dlinkdsr-500_firmware
1.04b58:b58
dlinkdsr-500_firmware
1.06b43:b43
dlinkdsr-500_firmware
1.06b53:b53
dlinkdsr-500
-
dlinkdsr-150n_firmware
𝑥
≤ 1.05b48
dlinkdsr-150n
-
dlinkdsr-250n_firmware
𝑥
≤ 1.08b39
dlinkdsr-250n_firmware
1.01b46:b46
dlinkdsr-250n_firmware
1.01b56:b56
dlinkdsr-250n_firmware
1.05b20:b20
dlinkdsr-250n_firmware
1.05b53:b53
dlinkdsr-250n_firmware
1.08b31:b31
dlinkdsr-1000_firmware
𝑥
≤ 1.08b51
dlinkdsr-1000_firmware
1.01b50:b50
dlinkdsr-1000_firmware
1.02b11:b11
dlinkdsr-1000_firmware
1.02b25:b25
dlinkdsr-1000_firmware
1.03b12:b12
dlinkdsr-1000_firmware
1.03b23:b23
dlinkdsr-1000_firmware
1.03b27:b27
dlinkdsr-1000_firmware
1.03b36:b36
dlinkdsr-1000_firmware
1.03b43:b43
dlinkdsr-1000_firmware
1.04b58:b58
dlinkdsr-1000_firmware
1.06b43:b43
dlinkdsr-1000_firmware
1.06b53:b53
dlinkdsr-1000
-
dlinkdsr-150_firmware
𝑥
≤ 1.08b29
dlinkdsr-150_firmware
1.05b29:b29
dlinkdsr-150_firmware
1.05b35:b35
dlinkdsr-150_firmware
1.05b46:b46
dlinkdsr-150_firmware
1.05b50:b50
dlinkdsr-150
-
dlinkdsr-250_firmware
𝑥
≤ 1.08b39
dlinkdsr-250_firmware
1.01b46:b46
dlinkdsr-250_firmware
1.01b56:b56
dlinkdsr-250_firmware
1.05b20:b20
dlinkdsr-250_firmware
1.05b53:b53
dlinkdsr-250_firmware
1.08b31:b31
dlinkdsr-250
-
dlinkdsr-1000n_firmware
𝑥
≤ 1.08b51
dlinkdsr-1000n_firmware
1.01b50:b50
dlinkdsr-1000n_firmware
1.02b11:b11
dlinkdsr-1000n_firmware
1.02b25:b25
dlinkdsr-1000n_firmware
1.03b12:b12
dlinkdsr-1000n_firmware
1.03b23:b23
dlinkdsr-1000n_firmware
1.03b27:b27
dlinkdsr-1000n_firmware
1.03b36:b36
dlinkdsr-1000n_firmware
1.03b43:b43
dlinkdsr-1000n_firmware
1.04b58:b58
dlinkdsr-1000n_firmware
1.06b43:b43
dlinkdsr-1000n_firmware
1.06b53:b53
dlinkdsr-1000n
-
dlinkdsr-500n_firmware
𝑥
≤ 1.08b51
dlinkdsr-500n_firmware
1.02b11:b11
dlinkdsr-500n_firmware
1.02b25:b25
dlinkdsr-500n_firmware
1.03b12:b12
dlinkdsr-500n_firmware
1.03b23:b23
dlinkdsr-500n_firmware
1.03b27:b27
dlinkdsr-500n_firmware
1.03b36:b36
dlinkdsr-500n_firmware
1.03b43:b43
dlinkdsr-500n_firmware
1.04b58:b58
dlinkdsr-500n_firmware
1.06b43:b43
dlinkdsr-500n_firmware
1.06b53:b53
dlinkdsr-500n
-
𝑥
= Vulnerable software versions