CVE-2025-51457
EUVD-2025-21100325.09.2026, 13:17
D-Link DAP-2610 up to 2.06B08r099 contains an authenticated command injection vulnerability within the web interface at the /index.xgi endpoint. An attacker with authenticated access can exploit some parameters to execute arbitrary system commands.
Awaiting analysis
This vulnerability is currently awaiting analysis.