CVE-2025-50652: High severity Dlink Di-8003 Firmware vulnerability
Published Apr 8, 2026
·Updated
An issue in D-Link DI-8003 16.07.26A1 related to improper handling of the id parameter in the /saveparmusb.asp endpoint.
Affected Software
2 affected components
All of the following
Dlink Di-8003 Firmware=16.07.26a1
Dlink DI-8003
Event History
Apr 8, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:24 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-50652?
The severity of CVE-2025-50652 is classified as high due to potential unauthorized access caused by improper handling of parameters.
2
How do I fix CVE-2025-50652?
To fix CVE-2025-50652, update the D-Link DI-8003 firmware to the latest version available from D-Link.
3
Which software versions are affected by CVE-2025-50652?
CVE-2025-50652 specifically affects D-Link DI-8003 firmware version 16.07.26A1.
4
What is the impact of CVE-2025-50652?
The impact of CVE-2025-50652 includes potential unauthorized access to sensitive parameters through the /saveparm_usb.asp endpoint.
5
Is my D-Link DI-8003 device vulnerable due to CVE-2025-50652?
Yes, if your D-Link DI-8003 is running firmware version 16.07.26A1, it is vulnerable to CVE-2025-50652.