CVE-2025-28398: Buffer Overflow
Published Apr 1, 2025
·Updated
D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsecnetasp function via the remotip parameter.
Affected Software
3 affected components
D-Link DI-8100
All of the following
Dlink Di-8100 Firmware=16.07.26
Dlink Di-8100=a1
Event History
Apr 1, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-28398?
CVE-2025-28398 has a high severity rating due to its potential to allow arbitrary code execution through a buffer overflow.
2
How do I fix CVE-2025-28398?
Fixing CVE-2025-28398 involves updating the D-Link DI-8100 firmware to the latest version provided by the vendor.
3
What is the impact of exploiting CVE-2025-28398?
Exploiting CVE-2025-28398 can lead to unauthorized access and control over the affected D-Link DI-8100 device.
4
Which devices are affected by CVE-2025-28398?
CVE-2025-28398 specifically affects the D-Link DI-8100 router running version 16.07.26A1.
5
What causes the vulnerability in CVE-2025-28398?
The vulnerability in CVE-2025-28398 is caused by a buffer overflow in the ipsec_net_asp function due to improper handling of the remot_ip parameter.