CVE-2025-44084
Last modified
CVE-2025-44084 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. D-link DI-8100 16.07.26A1 is vulnerable to Command Injection. An attacker can exploit this vulnerability by crafting specific HTTP requests, triggering the command execution flaw and gaining the highest privilege shell access to the firmware system.. EPSS estimates a 17.57% chance of exploitation in the next 30 days.
Description
D-link DI-8100 16.07.26A1 is vulnerable to Command Injection. An attacker can exploit this vulnerability by crafting specific HTTP requests, triggering the command execution flaw and gaining the highest privilege shell access to the firmware system.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dlink | Di-8100g Firmware | 16.07.26a1 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-44084?
How severe is CVE-2025-44084?
How do I fix CVE-2025-44084?
Are you affected by CVE-2025-44084?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
