Metrics
Affected Vendors & Products
Fri, 06 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dlink
Dlink dir-816 Dlink dir-816 Firmware |
|
CPEs | cpe:2.3:h:dlink:dir-816:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:dir-816_firmware:1.10cnb05:*:*:*:*:*:*:* |
|
Vendors & Products |
Dlink
Dlink dir-816 Dlink dir-816 Firmware |
Thu, 05 Jun 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 04 Jun 2025 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in D-Link DIR-816 1.10CNB05. Affected is the function setipsec_config of the file /goform/setipsec_config. The manipulation of the argument localIP/remoteIP leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer. | |
Title | D-Link DIR-816 setipsec_config os command injection | |
Weaknesses | CWE-77 CWE-78 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-04T23:31:06.113Z
Updated: 2025-06-05T14:11:06.821Z
Reserved: 2025-06-04T11:10:06.530Z
Link: CVE-2025-5620

Updated: 2025-06-05T13:20:25.265Z

Status : Analyzed
Published: 2025-06-05T00:15:23.513
Modified: 2025-06-06T15:42:43.250
Link: CVE-2025-5620

No data.