CVE-2024-33343: D-Link Dir-822+ Firmware
High severity, CVSS 8.8. EPSS: 8.3% chance of exploitation in the next 30 days.
D-Link DIR-822+ V1.0.5 was found to contain a command injection in ChgSambaUserSettings function of prog.cgi, which allows remote attackers to execute arbitrary commands via shell.
Affected products
- D-Link Dir-822+ Firmware: version 1.05 only
Published 2024-04-26. Last modified 2026-06-17.