CVE-2025-25742
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 12, 2025
Updated: Feb 19, 2025
CWE ID 787
Summary
CVE-2025-25742 is a buffer overflow vulnerability affecting D-Link DIR-853 A1 routers with firmware version FW1.20B07. This issue is located in the SetSysEmailSettings module, specifically in the AccountPassword parameter. A stack-based buffer overflow can be triggered, allowing an attacker to execute arbitrary code or cause a denial-of-service condition. Users are advised to update their routers to the latest firmware version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Dir-853 A1
Affected Vendors
- D-Link Corporation