Sploitus

CVE-2025-11097

No indexed exploits for CVE-2025-11097 yet

A vulnerability has been found in D-Link DIR-823X 250416. Impacted is an unknown function of the file /goform/set_device_name. The manipulation of the argument mac leads to command injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.

Affected products
Dir-823
Dlink dir-823x Firmware
= 250416
CVSS 3.1
8.8 HIGH
EPSS
4.1% (90th percentile)
Weakness
CWE-74, CWE-77
NVD status
Analyzed
Published
2025-09-28
CVE-2025-11097 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2025-11097 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2025-11097 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.