CVE-2025-6881: D-Link DI-8100 jhttpd pppoe_base.asp buffer overflow
A vulnerability was found in D-Link DI-8100 16.07.21. It has been rated as critical. Affected by this issue is some unknown functionality of the file /pppoebase.asp of the component jhttpd. The manipulation of the argument mschapen leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6881?
CVE-2025-6881 has been rated as critical due to the buffer overflow vulnerability.
What component is affected by CVE-2025-6881?
CVE-2025-6881 affects the jhttpd component of the D-Link DI-8100.
How does the buffer overflow occur in CVE-2025-6881?
The buffer overflow in CVE-2025-6881 occurs through manipulation of the mschap_en argument in the /pppoe_base.asp file.
How do I fix CVE-2025-6881?
To mitigate CVE-2025-6881, apply the latest firmware updates provided by D-Link for the DI-8100.
What products are affected by CVE-2025-6881?
The affected product for CVE-2025-6881 is the D-Link DI-8100.