Product
critical
threat
Remote Command Injection in D-Link NAS Devices
1 rule 1 TTP 1 CVEA critical command injection vulnerability in D-Link DNS-327L and DNS-340L devices allows unauthenticated remote code execution via manipulation of the f_dev parameter.
exploited
DNS-327L +1
vulnerability
rce
network-storage
1r
1t
1c
critical
advisory
OS Command Injection in D-Link Virtual Volume Handler
2 rules 2 TTPs 1 CVED-Link DNS-340L and DNS-345 network storage devices are susceptible to remote OS command injection via the /cgi-bin/virtual_vol.cgi component, enabling unauthenticated remote code execution.
DNS-340L +3
webserver
vulnerability
remote-code-execution
cve-2026-82692
storage-device
2r
2t
1c