CVE-2019-13373: D-Link Central Wifimanager

Critical severity, CVSS 9.8. EPSS: 68% chance of exploitation in the next 30 days.

An issue was discovered in the D-Link Central WiFi Manager CWM(100) before v1.03R0100_BETA6. Input does not get validated and arbitrary SQL statements can be executed in the database via the /web/Public/Conn.php parameter dbSQL.

Affected products

  • D-Link Central Wifimanager: version 1.03 only

Published 2019-07-06. Last modified 2026-06-17.