5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was found in D-Link DIR-823X 250416. The affected element is an unknown function of the file /goform/set_wifi_blacklists. The manipulation of the argument macList results in command injection. The attack may be performed from remote. The exploit has been made public and could be used.
Basic Information
ID
CVE-2025-11098
Source
VulDB
Published
Sep 28, 2025 at 05:32
Affected Product
Vendor
D-Link
Product
DIR-823X
Version
250416
Affected Versions
D-Link DIR-823X 250416