CISA Known Exploited Vulnerability

CVE-2019-16920

D-Link · Multiple Routers

D-Link Multiple Routers Command Injection Vulnerability

Date added
BOD 22-01 due date
CWE CWE-78
Ransomware Unknown

CISA description

Multiple D-Link routers contain a command injection vulnerability which can allow attackers to achieve full system compromise.

Required action

The impacted product is end-of-life and should be disconnected if still in use.