Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 17 Nov 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink
Dlink dir-823g Dlink dir-823g Firmware |
|
| CPEs | cpe:2.3:h:dlink:dir-823g:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:dir-823g_firmware:1.0.2b05_20181207:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dlink
Dlink dir-823g Dlink dir-823g Firmware |
Fri, 14 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 14 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 | |
| Metrics |
cvssV3_1
|
Fri, 14 Nov 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
D-link
D-link dir-823g D-link dir-823g Firmware |
|
| Vendors & Products |
D-link
D-link dir-823g D-link dir-823g Firmware |
Thu, 13 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /var/system/linux_vlan_reinit file. The vulnerability occurs because content read from this file is only partially validated for a prefix and then formatted using vsnprintf() before being executed with system(), allowing an attacker with write access to /var/system/linux_vlan_reinit to execute arbitrary commands on the device. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-14T18:08:51.160Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-60671
Updated: 2025-11-14T16:13:19.600Z
Status : Analyzed
Published: 2025-11-13T18:15:50.877
Modified: 2025-11-17T19:04:41.013
Link: CVE-2025-60671
No data.
OpenCVE Enrichment
Updated: 2025-11-14T09:29:09Z