Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Very Low

CVE-2020-6842

Disclosure Date: February 21, 2020 (last updated February 21, 2025)
D-Link DCH-M225 1.05b01 and earlier devices allow remote authenticated admins to execute arbitrary OS commands via shell metacharacters in the media renderer name.
Attacker Value
Low

CVE-2020-6841

Disclosure Date: February 21, 2020 (last updated February 21, 2025)
D-Link DCH-M225 1.05b01 and earlier devices allow remote attackers to execute arbitrary OS commands via shell metacharacters in the spotifyConnect.php userName parameter.