CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It is listed in CISA's Known Exploited Vulnerabilities catalog, indicating confirmed active exploitation in the wild. Its EPSS score suggests a 87.2% probability of exploitation in the next 30 days. It may be remotely exploitable.
CISA KEV Details
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Known
Added to KEV: 2022-04-15
Required action: The impacted product is end-of-life and should be disconnected if still in use.
Original NVD Description
The login_mgr.cgi script in D-Link DNS-320 through 2.05.B10 is vulnerable to remote command injection.
Related CVEs
Other vulnerabilities affecting the same vendor(s)