PT-2025-35854 · D Link · Di-8400

N0Ps1Ed

·

Publicado

2025-08-28

·

Atualizado

2025-09-11

·

CVE-2025-9938

CVSS v2.0

9.0

Alta

VetorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions D-Link DI-8400 version 16.07.26A1
Description A stack-based buffer overflow issue exists in the yyxz dlink asp function of the /yyxz.asp file. Manipulation of the ID argument can trigger this issue, allowing for remote exploitation. The exploit for this issue has been publicly released.
Recommendations As a temporary workaround, consider restricting access to the /yyxz.asp file until a fix is available.

Exploit

Correção

Buffer Overflow

Memory Corruption

Stack Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-10936
CVE-2025-9938

Produtos afetados

Di-8400