VYPR
Unrated severityNVD Advisory· Published Nov 19, 2025· Updated Nov 20, 2025

CVE-2025-63932

CVE-2025-63932

Description

D-Link Router DIR-868L A1 FW106KRb01.bin has an unauthenticated remote code execution vulnerability in the cgibin binary. The HNAP service provided by cgibin does not filter the HTTP SOAPAction header field. The unauthenticated remote attacker can execute the shell command.

Affected products

2
  • D-Link/Router DIR-868Ldescription
  • Dlink/DIR-868Lllm-fuzzy
    Range: = FW106KRb01.bin

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.