CNNVD-202512-199 Information

CNNVD ID

CNNVD-202512-199

CVE-2025-60854

  • CNNVD Published: 2025-12-02

Description (Chinese)

D-Link R15是中国友讯(D-Link)公司的一款无线路由器。 D-Link R15存在安全漏洞,该漏洞源于web管理员页面中修改密码请求时对model name参数的错误操作,可能导致命令注入。

Description (English)

D-Link R15 is a wireless router for the Chinese company D-Link. There is a security loophole in D-Link R15, which results from an error in the model name parameter when changing a password request on the web administrator ’ s page, which may lead to an injection of the command.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

友讯

Published

2025-12-02

Last Modified

2026-02-24

References

https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10473 https://access.redhat.com/security/cve/cve-2025-60854

Patch

https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10473

Share on: