Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

DIR-825 — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in DIR-825, with AI-generated Chinese analysis, references, and POCs.

This page documents Common Weakness Enumeration (CWE) vulnerabilities associated with the DIR-825 product developed by D-Link. It serves as a centralized resource for tracking security flaws that affect this specific networking hardware, providing a structured overview of known issues without promoting the product itself. The content collected here encompasses a wide range of vulnerability types, including buffer overflows, cross-site scripting, and authentication bypasses, which have been identified and disclosed over the last ten years. This time range allows for a comprehensive analysis of how security practices have evolved for this device family since its initial market release. By browsing this aggregation, users can track D-Link’s official security advisories to understand the timeline of disclosure and patch availability. Additionally, readers can gain a deeper understanding of specific weakness classes by examining how they manifest in real-world firmware versions, helping to contextualize abstract CWE definitions with concrete technical evidence. The page also enables the lookup of the DIR-825’s complete vulnerability history, offering insights into the frequency and severity of past incidents. This historical perspective is crucial for security professionals assessing the long-term risk profile of the device. Whether you are conducting a threat model, performing a penetration test, or managing enterprise network hygiene, this resource provides the necessary data to make informed decisions. It consolidates fragmented information into a single, accessible format, ensuring that stakeholders have clear visibility into the known security landscape surrounding the DIR-825.

Vendor: D-Link

CVE IDTitleCVSSSeverityPublished
CVE-2026-7069 D-Link DIR-825 miniupnpd upnpsoap.c AddPortMapping buffer overflow CWE-120 8.0 High2026-04-27
CVE-2026-7068 D-Link DIR-825 nmbd sserver.c NMBD_process buffer overflow CWE-120 8.8 High2026-04-26
CVE-2026-4627 D-Link DIR-825/DIR-825R NTP Service libdeuteron_modules.so handler_update_system_time os command injection CWE-78 7.2 High2026-03-24
CVE-2025-10666 D-Link DIR-825 apply.cgi sub_4106d4 buffer overflow CWE-120 8.8 High2025-09-18
CVE-2025-10034 D-Link DIR-825 httpd ping6_response.cg get_ping6_app_stat buffer overflow CWE-120 8.8 High2025-09-06
CVE-2025-8949 D-Link DIR-825 httpd ping_response.cgi get_ping_app_stat stack-based overflow CWE-121 7.2 High2025-08-14
CVE-2025-7206 D-Link DIR-825 httpd switch_language.cgi sub_410DDC stack-based overflow CWE-121 9.8 Critical2025-07-08
CVE-2025-6292 D-Link DIR-825 HTTP POST Request sub_4091AC stack-based overflow CWE-121 8.8 High2025-06-20
CVE-2025-6291 D-Link DIR-825 HTTP POST Request do_file stack-based overflow CWE-121 8.8 High2025-06-20
CVE-2022-43642 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 -2023-03-29
CVE-2022-43643 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 -2023-03-29
CVE-2022-43644 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 -2023-03-29
CVE-2022-43645 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 -2023-03-29
CVE-2022-43646 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 -2023-03-29
CVE-2022-43647 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 -2023-03-29

All 15 known CVE vulnerabilities affecting DIR-825 with full Chinese analysis, references, and POCs where available.