ATTENZIONE: nuovo firmware per questo ormai stabilissimo DIR-868L A1 1.20b07-jblf stabile del 20191121 Nel primo post!
Changelog: al'interno del file.
DIR-868L Rev.A Release Note
Firmware: 1.20b07-jblf
Hardware: Ax
Date: 2019/11/21
Problems Resolved:
1. Fix security issue CVE-2019-17621: Unauthenticated remote command execution
2. Fix security issue CVE-2019-20213: Information Disclosure LAN-side security vulnerability
----------
Firmware: 1.20b03-01-i5ia
Hardware: Ax
Date: 2018/05/18
Problems Resolved:
1. Fix SharePort Plus utility can't find USB device anymore.
----------
Firmware: v1.20B01
Hardware: Ax
Date: 2018/02/28
Problems Resolved:
1. CVE-2018-6527
XSS vulnerability in htdocs/webinc/js/adv_parent_ctrl_map.php allowing remote attackers to read a cookie via a crafted deviceid parameter to soap.cgi
2. CVE-2018-6528
XSS vulnerability in htdocs/webinc/body/bsc_sms_send.php allowing remote attackers to read a cookie via a crafted receiver parameter to soap.cgi
3. CVE-2018-6529
XSS vulnerability in htdocs/webinc/js/bsc_sms_inbox.php allowing remote attackers to read a cookie via a crafted Treturn parameter to soap.cgi
4. CVE-2018-6530
OS command injection vulnerability in soap.cgi (soapcgi_main incgibin) allowing remote attackers to execute arbitrary OS commands via the service parameter
Attenzione: sarà necessario aggiornare mediante il firmware intermedio 1.13B01 e poi al definitivo 1.20B07.