CVE-2025-8169: D-Link DIR-513 HTTP POST Request formSetWanPPTPpath formSetWanPPTPcallback buffer overflow
A vulnerability classified as critical has been found in D-Link DIR-513 1.10. This affects the function formSetWanPPTPcallback of the file /goform/formSetWanPPTPpath of the component HTTP POST Request Handler. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8169?
CVE-2025-8169 is classified as critical due to its potential to cause a buffer overflow in the D-Link DIR-513.
What components are affected by CVE-2025-8169?
CVE-2025-8169 affects the HTTP POST Request Handler, specifically the function formSetWanPPTPcallback.
How do I fix CVE-2025-8169?
To fix CVE-2025-8169, users should apply the latest firmware updates provided by D-Link for the DIR-513.
What potential consequences does CVE-2025-8169 have?
Exploiting CVE-2025-8169 could allow an attacker to execute arbitrary code due to the buffer overflow.
Is CVE-2025-8169 exploitable remotely?
Yes, CVE-2025-8169 can be exploited remotely if an attacker sends a crafted HTTP POST request to the affected device.