github.com
https://github.com/naihsin/IoT/blob/main/D-Link/DIR-600/cmd%20injection/README.md CVE-2023-33625
CRITICAL
D-Link Unauthenticated Remote Command Execution using UPnP via a special crafted M-SEARCH packet.
Record summary
CVE-2023-33625 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
D-Link DIR-600 Hardware Version B5, Firmware Version 2.18 was discovered to contain a command injection vulnerability via the ST parameter in the lxmldbc_system() function.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableYes
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 3, 2025 · Source: CVE List
Proofs of concept
1Catalogued exploits
MetasploitD-Link Unauthenticated Remote Command Execution using UPnP via a special crafted M-SEARCH packet.Metasploit exploitby Michael Messner <devnull@s3cur1ty.de> +5 moreNot analyzed1 file
References
6github.com
https://github.com/naihsin/IoT/tree/main/D-Link/DIR-600/cmd%20injection hackmd.io
https://hackmd.io/%40naihsin/By2datZD2 hackmd.io
https://hackmd.io/@naihsin/By2datZD2 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-33625 dlink.com
https://www.dlink.com/en/security-bulletin