CyberRota Analysis
AI-GeneratedThe D-Link DAP-2610, running firmware versions up to 2.06B08r099, is vulnerable to an authenticated command injection flaw in its web interface, specifically at the /index.xgi endpoint. This vulnerability allows an authenticated attacker to execute arbitrary system commands, potentially compromising the device's integrity and security. Organizations using this model should prioritize patching to mitigate the risk of exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
D-Link DAP-2610 up to 2.06B08r099 contains an authenticated command injection vulnerability within the web interface at the /index.xgi endpoint. An attacker with authenticated access can exploit some parameters to execute arbitrary system commands.