Description
A vulnerability was identified in D-Link DIR-823X 250416. The impacted element is an unknown function of the file /goform/set_mac_clone. Such manipulation of the argument mac leads to os command injection. The attack may be performed from remote. The exploit is publicly available and might be used.
Problem types
Product status
Timeline
| 2026-02-06: | Advisory disclosed |
| 2026-02-06: | VulDB entry created |
| 2026-02-06: | VulDB entry last update |
Credits
jiefengliang (VulDB User)
References
vuldb.com/?id.344649 (VDB-344649 | D-Link DIR-823X set_mac_clone os command injection)
vuldb.com/?ctiid.344649 (VDB-344649 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.745854 (Submit #745854 | dlink DIR-823X 250416 OS Command Injection)
github.com/master-abc/cve/issues/21
github.com/master-abc/cve/issues/21
www.dlink.com/