VYPR
Unrated severityNVD Advisory· Published Nov 17, 2025· Updated Nov 18, 2025

D-Link DWR-M920/DWR-M921/DWR-M960/DIR-822K/DIR-825M formTracerouteDiagnosticRun buffer overflow

CVE-2025-13305

Description

A weakness has been identified in D-Link DWR-M920, DWR-M921, DWR-M960, DIR-822K and DIR-825M 1.01.07. This issue affects some unknown processing of the file /boafrm/formTracerouteDiagnosticRun. Executing manipulation of the argument host can lead to buffer overflow. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.

Affected products

7
  • Dlink/DWR-M960llm-fuzzy
    Range: = 1.01.07
  • Dlink/DWR-M921llm-fuzzy
    Range: = 1.01.07
  • D-Link/DIR-822Kv5
    Range: 1.01.07
  • D-Link/DIR-825Mv5
    Range: 1.01.07
  • D-Link/DWR-M920v5
    Range: 1.01.07
  • D-Link/DWR-M921v5
    Range: 1.01.07
  • D-Link/DWR-M960v5
    Range: 1.01.07

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

9

News mentions

0

No linked articles in our index yet.