Metrics
Affected Vendors & Products
Wed, 08 Oct 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
D-link
D-link di-7001 Mini |
|
| Vendors & Products |
D-link
D-link di-7001 Mini |
Tue, 07 Oct 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 07 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in D-Link DI-7001 MINI 24.04.18B1. Impacted is an unknown function of the file /upgrade_filter.asp. This manipulation of the argument path causes os command injection. The attack may be initiated remotely. The exploit has been made available to the public and could be exploited. | |
| Title | D-Link DI-7001 MINI upgrade_filter.asp os command injection | |
| Weaknesses | CWE-77 CWE-78 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-07T20:02:05.836Z
Updated: 2025-10-07T20:33:12.045Z
Reserved: 2025-10-07T07:23:37.593Z
Link: CVE-2025-11407
Updated: 2025-10-07T20:33:07.798Z
Status : Awaiting Analysis
Published: 2025-10-07T20:15:33.400
Modified: 2025-10-08T19:38:09.863
Link: CVE-2025-11407
No data.