Home

Description

OS Command injection vulnerability in D-Link C1 2020-02-21. The sub_47F028 function in jhttpd contains a command injection vulnerability via the HTTP parameter "time".

PUBLISHED Reserved 2025-08-17 | Published 2025-09-23 | Updated 2025-09-24 | Assigner mitre

References

www.dlink.com/en/security-bulletin/

github.com/.../IoT-Vulnerability/blob/main/D-Link/Dlink_1.md

cve.org (CVE-2025-57636)

nvd.nist.gov (CVE-2025-57636)

Download JSON