Technologyglobal✓ verified · 95%
D-Link DIR-859 Router Command Execution Vulnerability
- When
- · day precision
- Where
- Global (internet)
- Category
- cyber_exploit
D-Link DIR-859 router contains a command execution vulnerability in the UPnP endpoint URL, /gena.cgi. Exploitation allows an unauthenticated remote attacker to execute system commands as root by sending a specially crafted HTTP SUBSCRIBE request to the UPnP service when connecting to the local network.
Sources
- CISA ↗ · first seen 2023-06-29 00:00 UTC
Defaxon links out to the original reporting and never republishes article text.
Correlated events
Computed by the Defaxon correlation engine — linked by shared actors, co-location, and temporal proximity. Scored hypotheses, never causal claims.
No correlated events found in the current window. As more events arrive, connections form automatically.