CVE-2025-44084: D-Link Di-8100g Firmware

Critical severity, CVSS 9.8. EPSS: 20.1% chance of exploitation in the next 30 days.

D-link DI-8100 16.07.26A1 is vulnerable to Command Injection. An attacker can exploit this vulnerability by crafting specific HTTP requests, triggering the command execution flaw and gaining the highest privilege shell access to the firmware system.

Affected products

  • D-Link Di-8100g Firmware: version 16.07.26a1 only

Published 2025-05-20. Last modified 2026-06-17.