First published: Wed Feb 12 2025(Updated: )
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetDynamicDNSSettings module.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-Link DIR-853 | ||
All of | ||
D-Link DIR-853 firmware | =1.20b07 | |
D-Link DIR-853 | =a1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25744 is classified as a high severity vulnerability due to its potential for remote code execution.
To fix CVE-2025-25744, update the firmware of the D-Link DIR-853 to the latest version provided by D-Link.
CVE-2025-25744 is caused by a stack-based buffer overflow in the SetDynamicDNSSettings module when handling the Password parameter.
Users of the D-Link DIR-853 router with firmware version 1.20B07 are affected by CVE-2025-25744.
An attacker exploiting CVE-2025-25744 could potentially execute arbitrary code on the affected D-Link DIR-853 router.