CVE-2017-11564: D-Link Eyeon Baby Monitor Firmware

High severity, CVSS 8.8. EPSS: 3.8% chance of exploitation in the next 30 days.

The D-Link EyeOn Baby Monitor (DCS-825L) 1.08.1 has multiple command injection vulnerabilities in the web service framework. An attacker can forge malicious HTTP requests to execute commands; authentication is required before executing the attack.

Affected products

  • D-Link Eyeon Baby Monitor Firmware: version 1.08.1 only

Published 2018-08-24. Last modified 2026-06-17.