D-Link DIR-619L 2.04B04 formSysCmd sysCmd ବିସ୍ତାରିତ ଅଧିକାର
Rakkoon nageenyaa kan ଜଟିଳ jedhamuun beekamu D-Link DIR-619L 2.04B04 keessatti argameera. Kan miidhamte is hojii formSysCmd. Hojii jijjiirraa irratti gaggeeffame sysCmd gara ବିସ୍ତାରିତ ଅଧିକାର geessa. CWE fayyadamuun rakkoo ibsuun gara CWE-77 geessa. Dadhabbii kana yeroo 05/08/2025 maxxanfameera. Odeeffannoon kun buufachuuf github.com irratti qoodameera.
Dogoggorri kun akka CVE-2025-4453tti beekama. Yaaliin weeraraa fageenya irraa jalqabamuu ni danda'a. Faayidaaleen teeknikaa ni jiru. Meeshaa balaa kana fayyadamuuf hin jiru. Amma, gatii ammee exploit might be approx. USD $5k-$25k ta'uu danda'a.
Akka ଅପରିଭାଷିତ jedhamee ibsameera. Akka 0-daytti, gatii daldalaa dhoksaa tilmaamame $5k-$25k ta'ee ture.
Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.
2 ଆଡାପ୍ଟେସନ୍ · 85 ପଏଣ୍ଟ
| ଫିଲ୍ଡ | ସୃଷ୍ଟି ହୋଇଛି 05/08/2025 08:54 PM | ଅଦ୍ୟତନ 1/1 05/09/2025 01:39 PM |
|---|---|---|
| software_vendor | D-Link | D-Link |
| software_name | DIR-619L | DIR-619L |
| software_version | 2.04B04 | 2.04B04 |
| software_function | formSysCmd | formSysCmd |
| software_argument | sysCmd | sysCmd |
| vulnerability_cwe | CWE-77 (ବିସ୍ତାରିତ ଅଧିକାର) | CWE-77 (ବିସ୍ତାରିତ ଅଧିକାର) |
| vulnerability_risk | 2 | 2 |
| cvss3_vuldb_av | N | N |
| cvss3_vuldb_ac | L | L |
| cvss3_vuldb_ui | N | N |
| cvss3_vuldb_s | U | U |
| cvss3_vuldb_c | L | L |
| cvss3_vuldb_i | L | L |
| cvss3_vuldb_a | L | L |
| cvss3_vuldb_rc | R | R |
| advisory_url | https://github.com/jylsec/vuldb/blob/main/D-Link/dlink_dir619l/Command_injection-formSysCmd-sysCmd/README.md | https://github.com/jylsec/vuldb/blob/main/D-Link/dlink_dir619l/Command_injection-formSysCmd-sysCmd/README.md |
| source_cve | CVE-2025-4453 | CVE-2025-4453 |
| cna_responsible | VulDB | VulDB |
| response_summary | The vendor was contacted early about this disclosure. | The vendor was contacted early about this disclosure. |
| cna_eol | 1 | 1 |
| software_type | Router Operating System | Router Operating System |
| cvss2_vuldb_av | N | N |
| cvss2_vuldb_ac | L | L |
| cvss2_vuldb_ci | P | P |
| cvss2_vuldb_ii | P | P |
| cvss2_vuldb_ai | P | P |
| cvss2_vuldb_rc | UR | UR |
| cvss4_vuldb_av | N | N |
| cvss4_vuldb_ac | L | L |
| cvss4_vuldb_ui | N | N |
| cvss4_vuldb_vc | L | L |
| cvss4_vuldb_vi | L | L |
| cvss4_vuldb_va | L | L |
| cvss2_vuldb_au | S | S |
| cvss2_vuldb_e | ND | ND |
| cvss2_vuldb_rl | ND | ND |
| cvss3_vuldb_pr | L | L |
| cvss3_vuldb_e | X | X |
| cvss3_vuldb_rl | X | X |
| cvss4_vuldb_at | N | N |
| cvss4_vuldb_pr | L | L |
| cvss4_vuldb_sc | N | N |
| cvss4_vuldb_si | N | N |
| cvss4_vuldb_sa | N | N |
| cvss4_vuldb_e | X | X |
| cvss2_vuldb_basescore | 6.5 | 6.5 |
| cvss2_vuldb_tempscore | 6.2 | 6.2 |
| cvss3_vuldb_basescore | 6.3 | 6.3 |
| cvss3_vuldb_tempscore | 6.1 | 6.1 |
| cvss3_meta_basescore | 6.3 | 6.3 |
| cvss3_meta_tempscore | 6.1 | 6.2 |
| cvss4_vuldb_bscore | 5.3 | 5.3 |
| cvss4_vuldb_btscore | 5.3 | 5.3 |
| advisory_date | 1746655200 (05/08/2025) | 1746655200 (05/08/2025) |
| price_0day | $5k-$25k | $5k-$25k |
| cve_nvd_summary | A vulnerability was found in D-Link DIR-619L 2.04B04. It has been classified as critical. This affects the function formSysCmd. The manipulation of the argument sysCmd leads to command injection. It is possible to initiate the attack remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longer supported by the maintainer. | |
| cvss4_cna_av | N | |
| cvss4_cna_ac | L | |
| cvss4_cna_at | N | |
| cvss4_cna_pr | L | |
| cvss4_cna_ui | N | |
| cvss4_cna_vc | L | |
| cvss4_cna_vi | L | |
| cvss4_cna_va | L | |
| cvss4_cna_sc | N | |
| cvss4_cna_si | N | |
| cvss4_cna_sa | N | |
| cvss4_cna_bscore | 5.3 | |
| cvss3_cna_av | N | |
| cvss3_cna_ac | L | |
| cvss3_cna_pr | L | |
| cvss3_cna_ui | N | |
| cvss3_cna_s | U | |
| cvss3_cna_c | L | |
| cvss3_cna_i | L | |
| cvss3_cna_a | L | |
| cvss3_cna_basescore | 6.3 | |
| cvss2_cna_av | N | |
| cvss2_cna_ac | L | |
| cvss2_cna_au | S | |
| cvss2_cna_ci | P | |
| cvss2_cna_ii | P | |
| cvss2_cna_ai | P | |
| cvss2_cna_basescore | 6.5 |