Unrated severityNVD Advisory· Published Sep 3, 2025· Updated Sep 4, 2025
D-Link DI-8400 yyxz.asp yyxz_dlink_asp stack-based overflow
CVE-2025-9938
Description
A weakness has been identified in D-Link DI-8400 16.07.26A1. The affected element is the function yyxz_dlink_asp of the file /yyxz.asp. This manipulation of the argument ID causes stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.
Affected products
2- D-Link/DI-8400v5Range: 16.07.26A1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- github.com/ZZ2266/.github.io/tree/main/Dlink/DI-8400/yyxz.aspmitreexploit
- vuldb.commitrethird-party-advisory
- github.com/ZZ2266/.github.io/tree/main/Dlink/DI-8400/yyxz.aspmitrerelated
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.dlink.commitreproduct
News mentions
0No linked articles in our index yet.