High severity7.5NVD Advisory· Published Apr 8, 2026· Updated Apr 22, 2026
CVE-2025-50666
CVE-2025-50666
Description
A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of multiple parameters in the /web_post.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET request in parameters such as name, en, user_id, log, and time.
Affected products
1- cpe:2.3:o:dlink:di-8003_firmware:16.07.26a1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/xiaotea/iot-vulnerability-collection/blob/main/README.mdnvdThird Party Advisory
- www.dlink.com/en/security-bulletin/nvdVendor Advisory
- supportannouncement.us.dlink.com/security/publication.aspxnvd
News mentions
0No linked articles in our index yet.