CVE-2018-6530: D-Link Multiple Routers OS Command Injection Vulnerability
Critical severity, CVSS 9.8. Actively exploited: in CISA KEV since 2022-09-08. EPSS: 96.7% chance of exploitation in the next 30 days.
OS command injection vulnerability in soap.cgi (soapcgi_main in cgibin) in D-Link DIR-880L DIR-880L_REVA_FIRMWARE_PATCH_1.08B04 and previous versions, DIR-868L DIR868LA1_FW112b04 and previous versions, DIR-65L DIR-865L_REVA_FIRMWARE_PATCH_1.08.B01 and previous versions, and DIR-860L DIR860LA1_FW110b04 and previous versions allows remote attackers to execute arbitrary OS commands via the service parameter.
Affected products
- D-Link Dir-860l Firmware: up to and including 1.10b04
- D-Link Dir-865l Firmware: up to and including 1.08b01
- D-Link Dir-868l Firmware: up to and including 1.12b04
- D-Link Dir-880l Firmware: up to and including 1.08b04
Published 2018-03-06. Last modified 2026-06-17.