A security vulnerability has been detected in D-Link DWR-M920, DWR-M921, DIR-822K and DIR-825M 1.1.5. Impacted is the function system of the file /boafrm/formDebugDiagnosticRun. The manipulation of the argument host leads to command injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.
References
Configurations
No configuration.
History
18 Nov 2025, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/LX-LX88/cve/issues/15 - |
18 Nov 2025, 00:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-18 00:15
Updated : 2025-11-18 17:15
NVD link : CVE-2025-13306
Mitre link : CVE-2025-13306
CVE.ORG link : CVE-2025-13306
JSON object : View
Products Affected
No product.
