Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4678 | An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the samba_wg and samba_nbn parameters. This vulnerability allows attackers to execute arbitrary operating system (OS) commands via a crafted packet. |
Fri, 02 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink
Dlink dsl-3782 Dlink dsl-3782 Firmware |
|
| CPEs | cpe:2.3:h:dlink:dsl-3782:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:dsl-3782_firmware:1.01:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dlink
Dlink dsl-3782 Dlink dsl-3782 Firmware |
Wed, 19 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 | |
| Metrics |
cvssV3_1
|
Tue, 18 Feb 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the samba_wg and samba_nbn parameters. This vulnerability allows attackers to execute arbitrary operating system (OS) commands via a crafted packet. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-19T15:40:02.210Z
Reserved: 2025-02-07T00:00:00.000Z
Link: CVE-2025-25894
Updated: 2025-02-19T15:38:49.314Z
Status : Analyzed
Published: 2025-02-18T22:15:19.040
Modified: 2025-05-02T15:46:11.650
Link: CVE-2025-25894
No data.
OpenCVE Enrichment
No data.
EUVD