PT-2026-27323 · D Link · Dir-825

1935648903

+1

·

Published

2026-03-24

·

Updated

2026-03-24

·

CVE-2026-4627

CVSS v2.0

8.3

High

AV:N/AC:L/Au:M/C:C/I:C/A:C
A vulnerability was found in D-Link DIR-825 and DIR-825R 1.0.5/4.5.1. Affected is the function handler update system time of the file libdeuteron modules.so of the component NTP Service. The manipulation results in os command injection. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.

Fix

Command Injection

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-4627

Affected Products

Dir-825