Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-19521 | A vulnerability, which was classified as critical, was found in D-Link DI-7300G+ and DI-8200G 17.12.20A1/19.12.25A1. This affects an unknown part of the file msp_info.htm. The manipulation of the argument flag/cmd/iface leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink
Dlink di-7300g\+ Dlink di-7300g\+ Firmware Dlink di-8200g Dlink di-8200g Firmware |
|
| CPEs | cpe:2.3:h:dlink:di-7300g\+:-:*:*:*:*:*:*:* cpe:2.3:h:dlink:di-8200g:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:di-7300g\+_firmware:19.12.25a1:*:*:*:*:*:*:* cpe:2.3:o:dlink:di-8200g_firmware:16.07.26a1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dlink
Dlink di-7300g\+ Dlink di-7300g\+ Firmware Dlink di-8200g Dlink di-8200g Firmware |
Mon, 30 Jun 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 30 Jun 2025 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as critical, was found in D-Link DI-7300G+ and DI-8200G 17.12.20A1/19.12.25A1. This affects an unknown part of the file msp_info.htm. The manipulation of the argument flag/cmd/iface leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | D-Link DI-7300G+/DI-8200G msp_info.htm os command injection | |
| Weaknesses | CWE-77 CWE-78 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-06-30T17:34:29.901Z
Reserved: 2025-06-29T11:56:11.016Z
Link: CVE-2025-6899
Updated: 2025-06-30T17:34:25.420Z
Status : Analyzed
Published: 2025-06-30T09:15:27.160
Modified: 2026-04-29T01:00:01.613
Link: CVE-2025-6899
No data.
OpenCVE Enrichment
Updated: 2025-07-13T22:31:33Z
EUVD