PT-2025-33133 · D Link · D-Link Dir-825
Ic0Rner
·
Published
2025-08-03
·
Updated
2025-08-18
·
CVE-2025-8949
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
D-Link DIR-825 version 2.10
Description:
A vulnerability exists in the
httpd component of D-Link DIR-825 version 2.10. The vulnerability is located in the get ping app stat function within the ping response.cgi file. Manipulation of the ping ipaddr argument can lead to a stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. This vulnerability affects products that are no longer supported by the manufacturer.Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Stack Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
D-Link Dir-825