VYPR

DI-8400

by Dlink

CVEs (2)

  • CVE-2025-8175MedJul 26, 2025
    risk 0.42cvss 6.5epss 0.00

    A vulnerability was found in D-Link DI-8400 16.07.26A1. It has been classified as problematic. This affects an unknown part of the file usb_paswd.asp of the component jhttpd. The manipulation of the argument share_enable leads to null pointer dereference. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

  • CVE-2025-9938Sep 3, 2025
    risk 0.00cvss epss 0.00

    A weakness has been identified in D-Link DI-8400 16.07.26A1. The affected element is the function yyxz_dlink_asp of the file /yyxz.asp. This manipulation of the argument ID causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.