CVE-2023-25280 is a critical OS Command Injection vulnerability affecting D-Link DIR-820L routers running firmware version A1_FW105B03. This flaw allows unauthenticated attackers to achieve root-level privilege escalation by injecting crafted payloads into the ping_addr parameter of the ping.ccp function. With a CVSS score of 9.8, this vulnerability poses a severe risk due to its network-based attack vector, low attack complexity, and complete compromise of confidentiality, integrity, and availability. The vulnerability is actively exploited in the wild, as confirmed by its presence in the KEV catalog, and has garnered significant community attention, including the availability of Nuclei templates for detection.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.05b03CPE matchmatch criteria | cpe:2.3:o:dlink:dir-820l_firmware:1.05b03:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.