High severity7.5NVD Advisory· Published Aug 10, 2021· Updated Jun 17, 2026
CVE-2021-29296
CVE-2021-29296
Description
Null Pointer Dereference vulnerability in D-Link DIR-825 2.10b02, which could let a remote malicious user cause a denial of service. The vulnerability could be triggered by sending an HTTP request with URL /vct_wan; the sbin/httpd would invoke the strchr function and take NULL as a first argument, which finally leads to the segmentation fault. NOTE: The DIR-825 and all hardware revisions is considered End of Life and as such this issue will not be patched
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:dlink:dir-825_firmware:2.10b02:*:*:*:*:*:*:*
- D-Link/DIR-825description
Patches
Vulnerability mechanics
References
2- supportannouncement.us.dlink.com/announcement/publication.aspxnvdVendor Advisory
- www.dlink.com/en/security-bulletin/nvdVendor Advisory
News mentions
0No linked articles in our index yet.