Fiche vulnérabilité
CVE-2025-11665 : faille critique dlink dap-2695 firmware (CVSS 9.8)
Description
A vulnerability was detected in D-Link DAP-2695 2.00RC131. This affects the function fwupdater_main of the file rgbin of the component Firmware Update Handler. Performing manipulation results in os command injection. The attack may be initiated remotely. This vulnerability only affects products that are no longer supported by the maintainer.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 13 oct. 2025
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- dlink dap-2695 firmware