CVE-2019-20215 | D-Link DIR-859 1.05/1.06B01 Beta01 urn /htdocs/cgibin ssdpcgi Shell Metacharacter os command injection (ID 156250 / EDB-48037)
A vulnerability classified as critical was found in D-Link DIR-859 1.05/1.06B01 Beta01. This vulnerability affects the function ssdpcgi of the file /htdocs/cgibin of the component urn. The manipulation as part of Shell Metacharacter leads to os command injection.
This vulnerability was named CVE-2019-20215. The attack can be initiated remotely. Furthermore, there is an exploit available.