CVE-2025-29165: Critical severity D-Link DIR-1253 MESH vulnerability
Published Mar 5, 2026
·Updated
An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component
Affected Software
3 affected components
D-Link DIR-1253 MESH
All of the following
Dlink Dir-1253 Firmware=1.6.1684
Dlink Dir-1253
Event History
Mar 5, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-29165?
CVE-2025-29165 is classified as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2025-29165?
To fix CVE-2025-29165, update the firmware of the D-Link DIR-1253 MESH to the latest version provided by the vendor.
3
What systems are affected by CVE-2025-29165?
CVE-2025-29165 affects the D-Link DIR-1253 MESH router model specifically.
4
What kind of attack does CVE-2025-29165 enable?
CVE-2025-29165 enables attackers to escalate their privileges on the affected device.
5
Who is the vendor associated with CVE-2025-29165?
The vendor associated with CVE-2025-29165 is D-Link.