PT-2025-30946 · D Link · D-Link Di-8400

Krisw

·

Published

2025-07-25

·

Updated

2025-09-16

·

CVE-2025-8175

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions D-Link DI-8400 version 16.07.26A1
Description A vulnerability exists in the jhttpd component of the software. The manipulation of the share enable argument in the usb paswd.asp file leads to a null pointer dereference. This issue can be exploited remotely. The exploit has been publicly disclosed.
Recommendations Address the issue in D-Link DI-8400 version 16.07.26A1.

Exploit

Fix

Improper Resource Release

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2025-09535
CVE-2025-8175

Affected Products

D-Link Di-8400