PT-2025-30844 · D Link · Dir-513

Weining Xiao

·

Published

2025-07-22

·

Updated

2025-09-16

·

CVE-2025-8159

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions D-Link DIR-513 version 1.0
Description A critical issue exists in the HTTP POST Request Handler component, specifically within the formLanguageChange function of the /goform/formLanguageChange file. Manipulation of the curTime argument can lead to a stack-based buffer overflow, potentially allowing for remote exploitation. The exploit for this issue has been publicly disclosed. This vulnerability affects products that are no longer supported by the maintainer.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Stack Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-09536
CVE-2025-8159

Affected Products

Dir-513