CVE-2025-8175: D-Link Di-8400 Firmware
High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.
A vulnerability was found in D-Link DI-8400 16.07.26A1. It has been classified as problematic. This affects an unknown part of the file usb_paswd.asp of the component jhttpd. The manipulation of the argument share_enable leads to null pointer dereference. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected products
- D-Link Di-8400 Firmware: version 16.07.26a1 only
Published 2025-07-26. Last modified 2026-06-17.