PT-2025-24608 · D Link · D-Link Dir-632

Xiaobor123

·

Published

2025-06-07

·

Updated

2025-06-16

·

CVE-2025-5912

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions D-Link DIR-632 version FW103B08
Description A critical vulnerability was found in the D-Link DIR-632, affecting the do file function of the HTTP POST Request Handler component. This vulnerability leads to a stack-based buffer overflow and can be initiated remotely. The exploit has been disclosed to the public and may be used. This issue only affects products that are no longer supported by the maintainer.
Recommendations For D-Link DIR-632 version FW103B08, as the product is no longer supported by the maintainer, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, consider disabling the do file function of the HTTP POST Request Handler component to minimize the risk of exploitation. Restrict access to the HTTP POST Request Handler to reduce the attack surface. Avoid using the vulnerable component until a solution is found.

Exploit

Stack Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-09541
CVE-2025-5912

Affected Products

D-Link Dir-632