CVE-2025-5624: D-Link DIR-816 QoSPortSetup stack-based overflow
A vulnerability was found in D-Link DIR-816 1.10CNB05. It has been declared as critical. This vulnerability affects the function QoSPortSetup of the file /goform/QoSPortSetup. The manipulation of the argument port0group/port0remarker/ssid0group/ssid0remarker leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5624?
CVE-2025-5624 has been declared as critical.
What systems are affected by CVE-2025-5624?
CVE-2025-5624 affects the D-Link DIR-816 router.
How do I fix CVE-2025-5624?
To fix CVE-2025-5624, update the firmware of your D-Link DIR-816 router to the latest version.
What type of vulnerability is CVE-2025-5624?
CVE-2025-5624 is a stack-based buffer overflow vulnerability.
What components of the D-Link DIR-816 are impacted by CVE-2025-5624?
CVE-2025-5624 impacts the QoSPortSetup function, specifically the parameters port0_group, port0_remarker, ssid0_group, and ssid0_remarker.