CVE-2024-52739

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
20/11/2024
Last modified:
09/05/2025

Description

D-LINK DI-8400 v16.07.26A1 was discovered to contain multiple remote command execution (RCE) vulnerabilities in the msp_info_htm function via the flag and cmd parameters.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dlink:di-8400_firmware:16.07.26a1:*:*:*:*:*:*:*
cpe:2.3:h:dlink:di-8400:a1:*:*:*:*:*:*:*