This content originally appeared on DEV Community and was authored by Freedom Coder
CVE ID
CVE-2020-25079
Vulnerability Name
D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability
- Project: D-Link
- Product: DCS-2530L and DCS-2670L Devices
Date
- Date Added: 2025-08-05
- Due Date: 2025-08-26
Description
D-Link DCS-2530L and DCS-2670L devices contains a command injection vulnerability in the cgi-bin/ddns_enc.cgi. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
Known To Be Used in Ransomware Campaigns?
Unknown
Action
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Additional Notes
https://support.dlink.com/productinfo.aspx?m=DCS-2530L ; https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10180 ; https://nvd.nist.gov/vuln/detail/CVE-2020-25079
More CVEs Info
Common Vulnerabilities & Exposures (CVE) List
This content originally appeared on DEV Community and was authored by Freedom Coder

Freedom Coder | Sciencx (2025-08-05T19:04:34+00:00) CVE-2020-25079: D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability. Retrieved from https://www.scien.cx/2025/08/05/cve-2020-25079-d-link-dcs-2530l-and-dcs-2670l-command-injection-vulnerability/
Please log in to upload a file.
There are no updates yet.
Click the Upload button above to add an update.