Junglewise Threat Intelligence

CVE-2023-25280: D-Link DIR-820 Router OS Command Injection Vulnerability

CVE-2023-25280 · Severity: critical · CVSS 9.8 · Exploited in the wild · Published 2024-09-30

Vendors: D-Link.

Executive brief

D-Link DIR-820 routers contain an OS command injection vulnerability in the ping.ccp component. Remote, unauthenticated attackers can execute arbitrary commands with root privileges by sending a crafted payload to the ping_addr parameter.

Affected products

  • D-Link DIR-820L firmware 1.05b03
  • D-Link DIR-820L

Timeline

  • 2023-03-15: disclosed: NVD Published Date
  • 2024-09-30: kev added: Added to CISA Known Exploited Vulnerabilities Catalog