Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2px7-g5g7-9jfm

Опубликовано: 27 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.3
CVSS3: 8

Описание

A security flaw has been discovered in D-Link DIR-825 up to 3.00b32. This impacts the function AddPortMapping of the file upnpsoap.c of the component miniupnpd. Performing a manipulation of the argument NewPortMappingDescription results in buffer overflow. The attack needs to be approached within the local network. The exploit has been released to the public and may be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer.

A security flaw has been discovered in D-Link DIR-825 up to 3.00b32. This impacts the function AddPortMapping of the file upnpsoap.c of the component miniupnpd. Performing a manipulation of the argument NewPortMappingDescription results in buffer overflow. The attack needs to be approached within the local network. The exploit has been released to the public and may be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer.

EPSS

Процентиль: 69%
0.01384
Низкий

7.3 High

CVSS4

8 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8
nvd
3 месяца назад

A security flaw has been discovered in D-Link DIR-825 up to 3.00b32. This impacts the function AddPortMapping of the file upnpsoap.c of the component miniupnpd. Performing a manipulation of the argument NewPortMappingDescription results in buffer overflow. The attack needs to be approached within the local network. The exploit has been released to the public and may be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 8
fstec
3 месяца назад

Уязвимость функции AddPortMapping() компонента miniupnpd микропрограммного обеспечения маршрутизаторов D-Link DIR-825, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 69%
0.01384
Низкий

7.3 High

CVSS4

8 High

CVSS3

Дефекты

CWE-119