CVE-2023-26613: D-Link Dir-823g Firmware

Critical severity, CVSS 9.8. EPSS: 31.4% chance of exploitation in the next 30 days.

An OS command injection vulnerability in D-Link DIR-823G firmware version 1.02B05 allows unauthorized attackers to execute arbitrary operating system commands via a crafted GET request to EXCU_SHELL.

Affected products

  • D-Link Dir-823g Firmware: version 1.02b05 only

Published 2023-06-29. Last modified 2026-06-17.