CVE-2025-11488High· 7.3▾ TwilightA weakness has been identified in D-Link DIR-852 up to 20251002. This affects an unknown part of the file /HNAP1/. Executing manipulation can lead to command injection. The attack may be launched remotely. The exploit has been made avail…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.2 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.6%
A weakness has been identified in D-Link DIR-852 up to 20251002. This affects an unknown part of the file /HNAP1/. Executing manipulation can lead to command injection. The attack may be launched remotely. The exploit has been made available to the public and could be exploited. This vulnerability only affects products that are no longer supported by the maintainer.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-12313Medium· 6.3A vulnerability has been found in D-Link DI-7001 MINI 19.09.19A1/24.04.18B1
CVE-2025-11095Medium· 6.3A vulnerability was detected in D-Link DIR-823X 250416
CVE-2025-11098Medium· 6.3A vulnerability was found in D-Link DIR-823X 250416
CVE-2025-10634Medium· 6.3A weakness has been identified in D-Link DIR-823X 240126/240802/250416
CVE-2025-11523Medium· 6.3A vulnerability was detected in Tenda AC7 15.03.06.44
CVE-2023-2378High· 7.2A flaw has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6