Vulnerabilities > Dlink > DWR 932C E1 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-11-23 CVE-2021-42784 OS Command Injection vulnerability in Dlink Dwr-932C E1 Firmware
OS Command Injection vulnerability in debug_fcgi of D-Link DWR-932C E1 firmware allows a remote attacker to perform command injection via a crafted HTTP request.
network
low complexity
dlink CWE-78
critical
9.8
2021-11-23 CVE-2021-42783 Missing Authentication for Critical Function vulnerability in Dlink Dwr-932C E1 Firmware
Missing Authentication for Critical Function vulnerability in debug_post_set.cgi of D-Link DWR-932C E1 firmware allows an unauthenticated attacker to execute administrative actions.
network
low complexity
dlink CWE-306
critical
9.8