216.73.216.233

CVE-2025-44084

· Published 20/05/2025 17:15 · Modified 21/05/2025 20:24

Labels: CVE-2025-44084 2025-05-20CVE-2025-44084CWE-77[email protected]

Essential information

Published
20/05/2025 17:15
Modified
21/05/2025 20:24
Author
Creator
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

D-link DI-8100 16.07.26A1 is vulnerable to Command Injection. An attacker can exploit this vulnerability by crafting specific HTTP requests, triggering the command execution flaw and gaining the highest privilege shell access to the firmware system.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
d-link / di-8100 cpe:2.3:a:d-link:di-8100:16.07.26A1:*:*:*:*:*:*:*

References