CVE-2025-25746: Buffer Overflow
Published Feb 12, 2025
·Updated
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetWanSettings module.
Affected Software
3 affected components
D-Link DIR-853
All of the following
Dlink Dir-853 Firmware=1.20b07
Dlink Dir-853=a1
Event History
Feb 12, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25746?
CVE-2025-25746 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2025-25746?
To fix CVE-2025-25746, update the D-Link DIR-853 firmware to version that addresses this vulnerability.
3
What products are affected by CVE-2025-25746?
CVE-2025-25746 affects the D-Link DIR-853 router, specifically identified as version FW1.20B07.
4
What is a stack-based buffer overflow as per CVE-2025-25746?
A stack-based buffer overflow in CVE-2025-25746 occurs via the Password parameter, allowing attackers to overwrite the call stack.
5
Can CVE-2025-25746 lead to unauthorized access?
Yes, CVE-2025-25746 can lead to unauthorized access, allowing an attacker to execute arbitrary code on the affected device.