D-Link DNS-343 ShareCenter devices running firmware versions up to and including 1.05 contain a command injection vulnerability in the Mail Test functionality. The web maintenance script posts to the internal goForm endpoint '/goform/Mail_Test' and uses several form parameters directly in a call to a system email utility without proper input validation. An unauthenticated remote attacker can supply crafted form data that injects shell commands, resulting in execution as root on the device. NOTE: The DNS-343 product line has been declared end-of-life.
The web script handling the '/goform/Mail_Test' endpoint passes form parameters directly to a system call for the email tool without proper input validation. An attacker can provide crafted form data containing additional shell commands that will be executed by the device's operating system. The vulnerability is available without authentication, meaning any network user with access to the web interface can exploit it.
The attacker gains remote code execution (RCE) with root privileges on the vulnerable device, giving them full control over the device and stored data.
D-Link manufacturer has announced end-of-life for the DNS-343 product line — no security patches will be released. It is recommended to immediately remove devices from operation or at least isolate them from public networks and untrusted network segments (e.g., restrict access to the web interface only from trusted IP addresses using a firewall). Ultimately, devices should be replaced with supported hardware from another manufacturer or a newer D-Link product line.
D-Link DNS-343 ShareCenter with firmware versions up to and including 1.05.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XDlink Dns 343
HWDlinkall versionsDlink Dns 343 Firmware
OSDlink≤ 1.0.5
Related vulnerabilities
D-Link DNS-320L/325/327L/340L — zakodowane na stałe poświadczenia (hard-coded credentials)
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DNS-320...
A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, D...
A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, ...
A vulnerability was determined in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, D...