CVE-2026-82593: D-Link DIR-825M LTE Module Firmware Upgrade formLtefotaUpgradeFibocom sub_41802C stack-based overflow
Published Aug 30, 2026
·Updated
A flaw has been found in D-Link DIR-825M 1.1.8. This impacts the function sub41802C of the file /boafrm/formLtefotaUpgradeFibocom of the component LTE Module Firmware Upgrade. This manipulation of the argument fotaurl causes stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been published and may be used.
Affected Software
1 affected component
D-Link DIR-825M=1.1.8
Event History
Aug 30, 2026
CVE Published
via MITRE·11:15 PM
Data Sourced
via MITRE·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attack can be carried out remotely, but the supplied vector indicates low privileges are required. No user interaction is required.
2
Which systems are known to be affected?
The affected product identified in the available data is D-Link DIR-825M running version 1.1.8. The vulnerable functionality is the LTE Module Firmware Upgrade component.
3
Is exploit code available?
Yes. The available data states that an exploit has been published and may be used.