299,038
Total vulnerabilities in the database
On D-Link DIR-859 A3-1.06 and DIR-850 A1.13 devices, /etc/services/DEVICE.TIME.php allows command injection via the $SERVER variable.
| Software | From | Fixed in |
|---|---|---|
| dlink / dir-859_a3_firmware | 1.06 | 1.06.x |
| dlink / dir-850l_a_firmware | 1.13 | 1.13.x |