CVE-2025-9727 | D-Link DIR-816L 206b01 /soap.cgi soapcgi_main service os command injection (EUVD-2025-26294)
A vulnerability, which was classified as critical, has been found in D-Link DIR-816L 206b01. Affected by this issue is the function soapcgi_main of the file /soap.cgi. This manipulation of the argument service causes os command injection. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is registered as CVE-2025-9727. Remote exploitation of the attack is possible. Furthermore, an exploit is available.