VYPR

DIR-852

by Dlink

CVEs (6)

  • CVE-2025-9752HigSep 1, 2025
    risk 0.49cvss 7.3epss 0.16

    A security vulnerability has been detected in D-Link DIR-852 1.00CN B09. Impacted is the function soapcgi_main of the file soap.cgi of the component SOAP Service. Such manipulation of the argument service leads to os command injection. The attack can be launched remotely. The…

  • CVE-2025-13562HigNov 23, 2025
    risk 0.48cvss 7.3epss 0.06

    A vulnerability was identified in D-Link DIR-852 1.00. This issue affects some unknown processing of the file /gena.cgi. Such manipulation of the argument service leads to command injection. The attack can be executed remotely. The exploit is publicly available and might be…

  • CVE-2025-11488HigOct 8, 2025
    risk 0.48cvss 7.3epss 0.02

    A weakness has been identified in D-Link DIR-852 up to 20251002. This affects an unknown part of the file /HNAP1/. Executing manipulation can lead to command injection. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.…

  • CVE-2025-10628MedSep 18, 2025
    risk 0.42cvss 6.3epss 0.09

    A vulnerability was found in D-Link DIR-852 1.00CN B09. This vulnerability affects unknown code of the file /htdocs/cgibin/hedwig.cgi of the component Web Management Interface. Performing manipulation results in command injection. The attack is possible to be carried out…

  • CVE-2025-10629MedSep 18, 2025
    risk 0.41cvss 6.3epss 0.05

    A vulnerability was determined in D-Link DIR-852 1.00CN B09. This issue affects the function ssdpcgi_main of the file htodcs/cgibin of the component Simple Service Discovery Protocol Service. Executing manipulation of the argument ST can lead to command injection. The attack may…

  • CVE-2025-10093MedSep 8, 2025
    risk 0.35cvss 5.3epss 0.01

    A vulnerability was identified in D-Link DIR-852 up to 1.00CN B09. Affected by this vulnerability is the function phpcgi_main of the file /getcfg.php of the component Device Configuration Handler. Such manipulation leads to information disclosure. The attack may be performed…