CVE-2013-5946

CRITICAL

The runShellCmd function in systemCheck.htm in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DS...

Affects 16 products across 1 vendor.

BCS7.82
CVSS 2.010.0
EPSS6.5%
Percentile93th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity.
CWE Weakness Definitions
CWE-78: OS Command Injection

Attacker injects OS commands through application inputs passed to system() or equivalent calls, leading to arbitrary command execution.

Related Attack Patterns (CAPEC)
CAPEC-43 Exploiting Multiple Input Interpretation Layers
via CWE-78
CAPEC-108 Command Line Execution through SQL Injection
via CWE-78
CAPEC-6 Argument Injection
via CWE-78
CAPEC-15 Command Delimiters
via CWE-78
CAPEC-88 OS Command Injection
via CWE-78

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

This vulnerability was disclosed in 2013. A critical vulnerability affects Dlink systems (CVE-2013-5946). No public exploit code is currently available. Isolate affected systems if patching is not feasible.

BSID: BS-2013-GLOBAL-296794-C • Model: rule-based-v1 • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2013-5946?
This vulnerability was disclosed in 2013. A critical vulnerability affects Dlink systems (CVE-2013-5946). No public exploit code is currently available. Isolate affected systems if patching is not feasible.
What is the CVSS score for CVE-2013-5946?
CVE-2013-5946 has CVSS 10.0 (Critical). Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C. EPSS: 6.5%.
Is CVE-2013-5946 actively exploited?
No confirmed active exploitation of CVE-2013-5946 as of 2026-05-30.
How do I remediate CVE-2013-5946?
Priority: MEDIUM.
What systems are affected by CVE-2013-5946?
CVE-2013-5946 affects: Dlink, Dlink, Dlink, Dlink, Dlink, Dlink, Dlink, Dlink.
Vulnerability Details
CVE IDCVE-2013-5946
BSIDBS-2013-GLOBAL-296794-C BreachSpider Global ID
CVSS VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Published2013-12-19
Last Modified2026-04-29
ICS Relevance90%
Weakness (CWE)
Domains
NETWORK-INFRA
SourceNVD
Official Description

The runShellCmd function in systemCheck.htm in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DSR-500N, DSR-1000, and DSR-1000N with firmware before 1.08B77 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) "Ping or Trace an IP Address" or (2) "Perform a DNS Lookup" section.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

Vulnerability details: The runShellCmd function in systemCheck.htm in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DSR-500N, DSR-1000, and DSR-1000N with firmware before 1.08B77 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) "Ping or Trace an IP Address" or (2) "Perform a DNS Lookup" section. CVSS vector: AV:N/AC:L/Au:N/C:C/I:C/A:C.

Exploitation Likelihood: LOW

Affected Products
VendorProductFixed Version
Dlink Dsr-500 Firmware
Dlink Dsr-500
Dlink Dsr-150N Firmware
Dlink Dsr-150N
Dlink Dsr-250N Firmware
Dlink Dsr-250N
Dlink Dsr-1000 Firmware
Dlink Dsr-1000
Dlink Dsr-150 Firmware
Dlink Dsr-150
Dlink Dsr-250 Firmware
Dlink Dsr-250
Dlink Dsr-1000N Firmware
Dlink Dsr-1000N
Dlink Dsr-500N Firmware
Dlink Dsr-500N
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: August 2026 | Threat Age: 4611 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Modelrule-based-v1
ConfidenceMEDIUM
Enriched At2026-05-24
SHA-512 Audit Hash7ffa7950beffd329e9dbae9a54f3c1fa12d452ca1a7f2c5e4fa5f79984764400f946e8f846ef2b6a4f7e90cf2c57c18c11b00c3bbbdc0f0b81d832ea77ef060c
Related CVEs affecting Dlink
CVE-2001-1220 10.0 D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point stores the a... CVE-2011-3992 10.0 Buffer overflow in the SSH server functionality on the D-Link DES-3800 with f... CVE-2015-2052 10.0 Stack-based buffer overflow in the DIR-645 Wired/Wireless Router Rev. Ax with... CVE-2007-1435 10.0 Buffer overflow in D-Link TFTP Server 1.0 allows remote attackers to cause a ... CVE-2014-3936 10.0 Stack-based buffer overflow in the do_hnap function in www/my_cgi.cgi in D-Li...
View all Dlink CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →