Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

DIR-825 — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in DIR-825, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive vulnerability aggregation report for the D-Link DIR-825 wireless router, focusing on identified software weaknesses and security flaws within the device’s firmware and networking stack. The content here collects a detailed record of security issues affecting the DIR-825, ranging from critical remote code execution flaws and privilege escalation bugs to minor information disclosure and denial of service vulnerabilities. The data covers the entire lifecycle of the product, including vulnerabilities discovered during initial development, those identified post-release through community research, and those disclosed by security researchers over the past decade, ensuring a historical perspective on the device’s security posture. Visitors to this page can systematically track D-Link’s advisory history to understand how the vendor has responded to specific threats and patches. Users can also gain a deeper understanding of common vulnerability classes prevalent in consumer-grade routers by examining the technical details and attack vectors associated with these specific weaknesses. Furthermore, administrators and security professionals can look up the DIR-825’s complete vulnerability history to assess risk exposure, verify if specific known issues have been patched in their current firmware version, and make informed decisions regarding network security and device replacement strategies based on empirical data rather than general assumptions.

Vendor: D-Link

CVE ID Title CVSS Severity Published
CVE-2026-7069 D-Link DIR-825 miniupnpd upnpsoap.c AddPortMapping buffer overflow CWE-120 8.0 High 2026-04-27
CVE-2026-7068 D-Link DIR-825 nmbd sserver.c NMBD_process buffer overflow CWE-120 8.8 High 2026-04-26
CVE-2026-4627 D-Link DIR-825/DIR-825R NTP Service libdeuteron_modules.so handler_update_system_time os command injection CWE-78 7.2 High 2026-03-24
CVE-2025-10666 D-Link DIR-825 apply.cgi sub_4106d4 buffer overflow CWE-120 8.8 High 2025-09-18
CVE-2025-10034 D-Link DIR-825 httpd ping6_response.cg get_ping6_app_stat buffer overflow CWE-120 8.8 High 2025-09-06
CVE-2025-8949 D-Link DIR-825 httpd ping_response.cgi get_ping_app_stat stack-based overflow CWE-121 7.2 High 2025-08-14
CVE-2025-7206 D-Link DIR-825 httpd switch_language.cgi sub_410DDC stack-based overflow CWE-121 9.8 Critical 2025-07-08
CVE-2025-6292 D-Link DIR-825 HTTP POST Request sub_4091AC stack-based overflow CWE-121 8.8 High 2025-06-20
CVE-2025-6291 D-Link DIR-825 HTTP POST Request do_file stack-based overflow CWE-121 8.8 High 2025-06-20
CVE-2022-43642 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 - 2023-03-29
CVE-2022-43643 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 - 2023-03-29
CVE-2022-43644 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 - 2023-03-29
CVE-2022-43645 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 - 2023-03-29
CVE-2022-43646 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 - 2023-03-29
CVE-2022-43647 D-Link DIR-825 操作系统命令注入漏洞 CWE-78 8.8 - 2023-03-29

All 15 known CVE vulnerabilities affecting DIR-825 with full Chinese analysis, references, and POCs where available.