CVE-2025-60698

Note: This data is for reference and cybersecurity research purposes only.CyStack advises users not to use this information for unlawful purposes.

Analyzing data...

Overview

Original source data

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the prog.cgi and rc binaries. The sub_432F60 function in prog.cgi stores user-supplied SetSysLogSettings/IPAddress values in NVRAM via nvram_safe_set("SysLogRemote_IPAddress", ...). These values are later retrieved in the sub_448DCC function of rc using nvram_safe_get and concatenated into a shell command executed via twsystem() without any sanitization. An unauthenticated remote attacker can exploit this vulnerability to execute arbitrary commands on the device through specially crafted HTTP requests to the router's web interface.

Affected products and scope

Analyzing data...

Technical details

Analyzing data...

Exploitability

Analyzing data...

Technical impact

Analyzing data...

Business impact

Analyzing data...

Remediation

Analyzing data...

Detection

Analyzing data...
Sources (7)
Learn more

Run an in-depth assessment with complete web risk management

CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.

Explore CyStack VulnScan