Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-1262

23
FAUCET Score

CVE-2022-1262 is a command injection vulnerability (CWE-78) in the protest binary, affecting D-Link products. An authenticated attacker with remote command line interface access can execute arbitrary commands as root, leading to high confidentiality, integrity, and availability impacts. While rated as HIGH severity (CVSS 7.8), there is no evidence of active exploitation, public exploit code, or significant community discussion.

Impacted Technologies

VendorProductVersion(s)CPE
1.02b03CPE matchmatch criteria
cpe:2.3:o:dlink:dir-1360_firmware:1.02b03:*:*:*:*:*:*:*
1.03b02CPE matchmatch criteria
cpe:2.3:o:dlink:dir-1360_firmware:1.03b02:*:*:*:*:*:*:*
1.11b04CPE matchmatch criteria
cpe:2.3:o:dlink:dir-1360_firmware:1.11b04:*:*:*:*:*:*:*
1.01b04CPE matchmatch criteria
cpe:2.3:o:dlink:dir-1760_firmware:1.01b04:*:*:*:*:*:*:*
1.11b03CPE matchmatch criteria
cpe:2.3:o:dlink:dir-1760_firmware:1.11b03:beta:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
2.23%
Probability of exploitation in next 30 days
EPSS Percentile
80.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0223 is in the 97th percentile among its peer group of 17,061 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (3)

giteavendor investigatingvia llm_extracted
meterspherevendor investigatingvia llm_extracted
qnapvendor investigatingvia llm_extracted

Vendor Advisories (3)

giteallm-gitea-f19bc6bd64445b3cMEDIUM

Command Injection Vulnerability in /bin/protest Binary on Multiple D-Link Routers

Apr 6, 2022
qnapllm-qnap-6be329bb3169802fMEDIUM

Command Injection Vulnerability in /bin/protest Binary on Multiple D-Link Routers

Apr 6, 2022
meterspherellm-metersphere-46ae20abea1d9857MEDIUM

Command Injection Vulnerability in /bin/protest Binary on Multiple D-Link Routers

Apr 6, 2022

References

tenable.com / security/research/tra-2022-09
ExploitThird Party Advisory