A vulnerability was determined in D-Link DIR-823X up to 250416. Affected by this vulnerability is the function sub_415028 of the file /goform/set_static_leases. Executing manipulation of the argument Hostname can lead to command injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
Metrics
Affected Vendors & Products
References
History
Tue, 09 Sep 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was determined in D-Link DIR-823X up to 250416. Affected by this vulnerability is the function sub_415028 of the file /goform/set_static_leases. Executing manipulation of the argument Hostname can lead to command injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. | |
Title | D-Link DIR-823X set_static_leases sub_415028 command injection | |
Weaknesses | CWE-74 CWE-77 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-09T02:32:10.145Z
Reserved: 2025-09-08T15:19:14.461Z
Link: CVE-2025-10123

No data.

Status : Received
Published: 2025-09-09T03:15:32.583
Modified: 2025-09-09T03:15:32.583
Link: CVE-2025-10123

No data.

No data.