VendorsD-Linkdir-825any version
Vulnerabilities

D-Link DIR-825 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

16CVEs
CVE-2019-16920
Unauthenticated remote code execution occurs in D-Link products such as DIR-655C, DIR-866L, DIR-652, and DHP-1565. The issue occurs when the attacker sends an arbitrary input to a "PingTest" device common gateway interface that could lead to common injection. An attacker who successfully triggers the command injection could achieve full system compromise. Later, it was independently found that these are also affected: DIR-855L, DAP-1533, DIR-862L, DIR-615, DIR-835, and DIR-825.
Published 2019-09-27 · Analyzed
10.0KEVEPSS 1.000
CVE-2025-7206
D-Link DIR-825 httpd switch_language.cgi sub_410DDC stack-based overflow
Published 2025-07-08 · Analyzed
10.0EPSS 0.184
CVE-2025-10666
D-Link DIR-825 apply.cgi sub_4106d4 buffer overflow
Published 2025-09-18 · Modified
9.81 PoCEPSS 0.033
CVE-2022-47035
Buffer Overflow Vulnerability in D-Link DIR-825 v1.33.0.44ebdd4-embedded and below allows attacker to execute arbitrary code via the GetConfig method to the /CPE endpoint.
Published 2023-01-31 · Modified
9.8EPSS 0.012
CVE-2025-10034
D-Link DIR-825 httpd ping6_response.cg get_ping6_app_stat buffer overflow
Published 2025-09-06 · Analyzed
9.8EPSS 0.009
CVE-2025-8949
D-Link DIR-825 httpd ping_response.cgi get_ping_app_stat stack-based overflow
Published 2025-08-14 · Analyzed
9.8EPSS 0.009
CVE-2020-10214
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is a stack-based buffer overflow in the httpd binary. It allows an authenticated user to execute arbitrary code via a POST to ntp_sync.cgi with a sufficiently long parameter ntp_server.
Published 2020-03-07 · Modified
9.0EPSS 0.183
CVE-2020-10215
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the dns_query_name parameter in a dns_query.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.
Published 2020-03-07 · Modified
9.0EPSS 0.053
CVE-2020-10216
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the date parameter in a system_time.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.
Published 2020-03-07 · Modified
9.0EPSS 0.050
CVE-2020-10213
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the wps_sta_enrollee_pin parameter in a set_sta_enrollee_pin.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.
Published 2020-03-07 · Modified
9.0EPSS 0.050
CVE-2025-6291
D-Link DIR-825 HTTP POST Request do_file stack-based overflow
Published 2025-06-20 · Analyzed
9.0EPSS 0.013
CVE-2025-6292
D-Link DIR-825 HTTP POST Request sub_4091AC stack-based overflow
Published 2025-06-20 · Analyzed
9.0EPSS 0.013
CVE-2026-7068
D-Link DIR-825 nmbd sserver.c NMBD_process buffer overflow
Published 2026-04-26 · Analyzed
8.8EPSS 0.019
CVE-2026-7069
D-Link DIR-825 miniupnpd upnpsoap.c AddPortMapping buffer overflow
Published 2026-04-27 · Analyzed
8.0EPSS 0.014
CVE-2021-29296
Null Pointer Dereference vulnerability in D-Link DIR-825 2.10b02, which could let a remote malicious user cause a denial of service. The vulnerability could be triggered by sending an HTTP request with URL /vct_wan; the sbin/httpd would invoke the strchr function and take NULL as a first argument, which finally leads to the segmentation fault. NOTE: The DIR-825 and all hardware revisions is considered End of Life and as such this issue will not be patched
Published 2021-08-10 · Modified
7.5EPSS 0.011
CVE-2024-0717
D-Link Good Line Router v2 HTTP GET Request devinfo information disclosure
Published 2024-01-19 · Modified
5.3EPSS 0.182