关键漏洞信息 Title: D-Link DIR-823X 250416 OS Command Injection Description: - A critical Command Injection vulnerability exists in the D-Link DIR-823X firmware. The vulnerability is located in the function , which is associated with the path. - The application retrieves network configuration parameters , , and from the user-controlled input via . When the is provided, the application attempts to update the system's DHCP configuration using the function, which executes system shell commands. Source: https://github.com/master-abc/cve/issues/16 User: jiefengliang (UID 93721) Submission Date: 01/14/2026 06:35 PM Moderation Date: 01/28/2026 04:18 PM Status: Accepted VulDB Entry: 2343228 Points: 20