Buffer Overflow Vulnerability in D-Link DIR-825 v1.33.0.44ebdd4-embedded and below allows attacker to execute arbitrary code via the GetConfig method to the /CPE endpoint.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDlink Dir 825
HWDlinkall versionsDlink Dir 825 Firmware
OSDlink≤ 1.33.0.44ebdd4-embedded
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCEMemory
Related vulnerabilities
CVE-2020-29557CRITICAL9.8⚠ KEVPL ✓same product
Buffer overflow w D-Link DIR-825 umożliwiający RCE bez uwierzytelnienia
CVE-2019-16920CRITICAL9.8⚠ KEVPL ✓same product
D-Link: Nieuwierzytelniony RCE przez command injection w PingTest CGI
CVE-2021-46442CRITICAL9.8PL ✓same product
Auth Bypass w D-Link DIR-825 G1 — nieautoryzowany dostęp do firmware i konfiguracji
CVE-2026-7068HIGH7.4same product
A vulnerability was identified in D-Link DIR-825 3.00b32. This affects the function NMBD_process of the file s...
CVE-2026-7069HIGH7.3same product
A security flaw has been discovered in D-Link DIR-825 up to 3.00b32. This impacts the function AddPortMapping ...