CVE-2025-6328: D-Link DIR-815 hedwig.cgi sub_403794 stack-based overflow
Published Jun 20, 2025
·Updated
A vulnerability was found in D-Link DIR-815 1.01. It has been declared as critical. This vulnerability affects the function sub403794 of the file hedwig.cgi. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
3 affected components
D-Link DIR-815
All of the following
Dlink Dir-815 Firmware=1.0.1
Dlink Dir-815
Event History
Jun 20, 2025
CVE Published
via MITRE·09:31 AM
Data Sourced
via MITRE·09:31 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Jul 9, 57515
Event
via FIRST·02:48 PM
Jun 15, 58473
Event
via NVD·06:17 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-6328?
CVE-2025-6328 has been declared as critical.
2
How do I fix CVE-2025-6328?
To fix CVE-2025-6328, update the firmware of the D-Link DIR-815 to the latest version provided by D-Link.
3
What type of vulnerability is CVE-2025-6328?
CVE-2025-6328 is a stack-based buffer overflow vulnerability.
4
Can CVE-2025-6328 be exploited remotely?
Yes, CVE-2025-6328 can be exploited remotely.
5
Which software is affected by CVE-2025-6328?
The vulnerability CVE-2025-6328 affects the D-Link DIR-815 router.