Description
A command injection vulnerability exists in D-Link DAP-1650 devices when handling UPnP SUBSCRIBE messages. An unauthenticated attacker can exploit this vulnerability to gain command execution on the device as root.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Thu, 29 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: XI
Published:
Updated: 2025-05-29T15:18:31.325Z
Reserved: 2024-01-18T21:37:19.591Z
Link: CVE-2024-23625
Updated: 2024-08-01T23:06:25.334Z
Status : Modified
Published: 2024-01-26T00:15:10.620
Modified: 2024-11-21T08:58:02.027
Link: CVE-2024-23625
No data.
OpenCVE Enrichment
No data.
Weaknesses