CVE-2010-4964

D-Link DCS-2121 <1.04 - Command Injection

Title source: llm
STIX 2.1

Description

recorder_test.cgi on the D-Link DCS-2121 camera with firmware 1.04 allows remote attackers to execute arbitrary commands via shell metacharacters in the Password field, related to a "semicolon injection" vulnerability.

References (3)

Core 3

Scores

EPSS 0.0178
EPSS Percentile 83.0%

Details

CWE
CWE-94
Status published
Products (2)
dlink/dcs-2121
dlink/dcs-2121_firmware 1.04
Published Oct 16, 2011
Tracked Since Feb 18, 2026