CVE-2025-29743: Command Injection
Published Apr 22, 2025
·Updated
D-Link DIR-816 A2V1.1.0B05 was found to contain a command injection in /goform/delRouting.
Affected Software
3 affected components
D-Link DIR-816
All of the following
Dlink Dir-816 Firmware=1.10_b05
Dlink DIR-816=a2
Event History
Apr 22, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-29743?
CVE-2025-29743 has a medium severity level due to its potential for command injection.
2
How do I fix CVE-2025-29743?
To fix CVE-2025-29743, update to the latest firmware version provided by D-Link for the DIR-816 router.
3
What impact does CVE-2025-29743 have on my device?
CVE-2025-29743 allows attackers to execute arbitrary commands on the device, potentially compromising its security.
4
Who is affected by CVE-2025-29743?
CVE-2025-29743 affects users of the D-Link DIR-816 router, specifically version A2V1.1.0B05.
5
Is CVE-2025-29743 being actively exploited?
There are no current reports of active exploitation for CVE-2025-29743, but it remains a significant security risk.