A command injection vulnerability exists in D-Link DAP-1650 devices when handling UPnP SUBSCRIBE messages. An unauthenticated attacker can exploit this vulnerability to gain command execution on the device as root.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 29 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: XI
Published:
Updated: 2025-05-29T15:18:31.325Z
Reserved: 2024-01-18T21:37:19.591Z
Link: CVE-2024-23625
Updated: 2024-08-01T23:06:25.334Z
Status : Modified
Published: 2024-01-26T00:15:10.620
Modified: 2024-11-21T08:58:02.027
Link: CVE-2024-23625
No data.
OpenCVE Enrichment
No data.
Weaknesses