VYPR
Critical severity9.8NVD Advisory· Published Nov 14, 2025· Updated Jun 17, 2026

CVE-2025-13188

CVE-2025-13188

Description

A vulnerability was detected in D-Link DIR-816L 2_06_b09_beta. Affected by this vulnerability is the function authenticationcgi_main of the file /authentication.cgi. Performing manipulation of the argument Password results in stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Dlink/DIR816Lcpe-rescue2 versions
    2_06_b09_beta+ 1 more
    • (no CPE)range: 2_06_b09_beta
    • (no CPE)range: = 2.06b09 beta
  • cpe:2.3:o:dlink:dir-816l_firmware:2.06.b09:beta:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.