Critical command injection vulnerability in D-Link DNR-322L Cloud Network Video Recorder allowing authenticated attackers to execute OS-level commands via the 'Backup Config' functionality. This network device is commonly internet-facing for remote monitoring purposes and is actively exploited according to CISA KEV.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: DIRECT_NETWORK
CVE Published: 2022-11-29
Added to CISA KEV: 2025-08-05 980 DAYS BETWEEN CVE AND KEV
CVE-2022-40799 is a security vulnerability affecting the D-Link DNR-322L network video recorder (NVR) [2]. It is officially recognized by CISA as a Known Exploited Vulnerability (KEV), meaning there is evidence of it being actively exploited in the wild [1].
CVE-2022-40799 D-Link DNR-322L Download of Code Without Integrity Check Vulnerability. These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise. Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk…
An official website of the United States government NVD MENU ... This CVE is in CISA's Known Exploited Vulnerabilities Catalog. Reference CISA's BOD 22-01 and Known Exploited Vulnerabilities Catalog for further guidance and ... CVE-2022-40799 Detail. Description. Data Integrity Failure in 'Backup Co…
Amongst ransomware actors, Qilin has solidified its position in first place, growing from 13% to just over 20% of attacks. ... BlackNevas, a crypto-ransomware actor also known as Trial_Recovery, while first seen in September 2024, is notable for its recent reappearance after a hiatus of several mont…