CVE-2025-10401
- EPSS 0.09%
- Veröffentlicht 14.09.2025 15:32:06
- Zuletzt bearbeitet 24.09.2025 18:41:54
A vulnerability was detected in D-Link DIR-823x up to 250416. The affected element is an unknown function of the file /goform/diag_ping. Performing manipulation of the argument target_addr results in command injection. Remote exploitation of the atta...
CVE-2025-10123
- EPSS 0.34%
- Veröffentlicht 09.09.2025 02:32:10
- Zuletzt bearbeitet 24.09.2025 18:43:47
A vulnerability was determined in D-Link DIR-823X up to 250416. Affected by this vulnerability is the function sub_415028 of the file /goform/set_static_leases. Executing manipulation of the argument Hostname can lead to command injection. The attack...
CVE-2025-29039
- EPSS 0.5%
- Veröffentlicht 17.04.2025 00:00:00
- Zuletzt bearbeitet 25.04.2025 18:28:39
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the function 0x41dda8
CVE-2025-29043
- EPSS 1.25%
- Veröffentlicht 17.04.2025 00:00:00
- Zuletzt bearbeitet 25.04.2025 18:32:43
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the function 0x417234
CVE-2025-29042
- EPSS 1.25%
- Veröffentlicht 17.04.2025 00:00:00
- Zuletzt bearbeitet 25.04.2025 18:32:08
An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the macaddr key value to the function 0x42232c
CVE-2025-29041
- EPSS 1.25%
- Veröffentlicht 17.04.2025 00:00:00
- Zuletzt bearbeitet 01.05.2025 18:15:54
An issue in dlink DIR 823x 240802 allows a remote attacker to execute arbitrary code via the target_addr key value and the function 0x41710c
CVE-2025-29040
- EPSS 1.25%
- Veröffentlicht 17.04.2025 00:00:00
- Zuletzt bearbeitet 01.05.2025 18:15:54
An issue in dlink DIR 823x 240802 allows a remote attacker to execute arbitrary code via the target_addr key value and the function 0x41737c
CVE-2025-29635
- EPSS 0.74%
- Veröffentlicht 25.03.2025 00:00:00
- Zuletzt bearbeitet 03.04.2025 17:35:51
A command injection vulnerability in D-Link DIR-823X 240126 and 240802 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /goform/set_prohibiting via the corresponding function, triggering remot...
CVE-2025-2717
- EPSS 0.04%
- Veröffentlicht 24.03.2025 23:31:05
- Zuletzt bearbeitet 21.05.2025 16:51:45
A vulnerability, which was classified as critical, has been found in D-Link DIR-823X 240126/240802. This issue affects the function sub_41710C of the file /goform/diag_nslookup of the component HTTP POST Request Handler. The manipulation of the argum...
CVE-2025-1103
- EPSS 0.51%
- Veröffentlicht 07.02.2025 15:15:17
- Zuletzt bearbeitet 21.05.2025 16:51:34
A vulnerability, which was classified as problematic, was found in D-Link DIR-823X 240126/240802. This affects the function set_wifi_blacklists of the file /goform/set_wifi_blacklists of the component HTTP POST Request Handler. The manipulation of th...