CVE-2025-6291: D-Link DIR-825 HTTP POST Request do_file stack-based overflow
A vulnerability, which was classified as critical, was found in D-Link DIR-825 2.03. This affects the function dofile of the component HTTP POST Request Handler. The manipulation leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6291?
CVE-2025-6291 is classified as critical due to its potential for stack-based buffer overflow.
How do I fix CVE-2025-6291?
To mitigate CVE-2025-6291, it is recommended to update the D-Link DIR-825 router to the latest firmware version.
What can be exploited in CVE-2025-6291?
CVE-2025-6291 can be exploited through a remote attack targeting the HTTP POST Request Handler.
What component is affected by CVE-2025-6291?
The function do_file in the HTTP POST Request Handler is affected by CVE-2025-6291.
Who is affected by CVE-2025-6291?
Users of the D-Link DIR-825 router are affected by CVE-2025-6291.