PT-2025-30934 · D Link · Dir-513

Attackinglin

·

Published

2025-07-25

·

Updated

2025-07-30

·

CVE-2025-8169

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions D-Link DIR-513 version 1.10
Description A critical vulnerability exists due to a buffer overflow in the formSetWanPPTPcallback function within the /goform/formSetWanPPTPpath file of the HTTP POST Request Handler component. The vulnerability is triggered by manipulating the curTime argument, allowing for remote exploitation. The exploit has been publicly disclosed. This issue affects products that are no longer supported by the maintainer.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-09908
CVE-2025-8169

Affected Products

Dir-513