D-Link Dir 825m

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in D-Link Dir 825m.

By the Year

In 2026 there have been 2 vulnerabilities in D-Link Dir 825m with an average score of 8.8 out of ten. Last year, in 2025 Dir 825m had 3 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Dir 825m in 2026 could surpass last years number. However, the average CVE base score of the vulnerabilities in 2026 is greater by 0.83.

Year Vulnerabilities Average Score
2026 2 8.80
2025 3 7.97

It may take a day or so for new Dir 825m vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent D-Link Dir 825m Security Vulnerabilities

D-Link DIR-825M 1.1.12 buffer overflow in sub_414BA8 via submit-url
CVE-2026-7289 8.8 - High - April 28, 2026

A vulnerability was found in D-Link DIR-825M 1.1.12. This issue affects the function sub_414BA8 of the file /boafrm/formWanConfigSetup. The manipulation of the argument submit-url results in buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used.

Classic Buffer Overflow

D-Link DIR-825M 1.1.12 VPN Config Buffer Overflow (sub_4151FC)
CVE-2026-7288 8.8 - High - April 28, 2026

A vulnerability has been found in D-Link DIR-825M 1.1.12. This vulnerability affects the function sub_4151FC of the file /boafrm/formVpnConfigSetup. The manipulation of the argument submit-url leads to buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.

Classic Buffer Overflow

D-Link routers 1.1.5: Cmd Injection in /boafrm/formDebugDiagnosticRun
CVE-2025-13306 6.3 - Medium - November 17, 2025

A security vulnerability has been detected in D-Link DWR-M920, DWR-M921, DIR-822K and DIR-825M 1.1.5. Impacted is the function system of the file /boafrm/formDebugDiagnosticRun. The manipulation of the argument host leads to command injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.

Command Injection

D-Link DWR-M920/M921/M960, DIR-822K/825M 1.01.07 Buffer Overflow in /boafrm/diag
CVE-2025-13305 8.8 - High - November 17, 2025

A weakness has been identified in D-Link DWR-M920, DWR-M921, DWR-M960, DIR-822K and DIR-825M 1.01.07. This issue affects some unknown processing of the file /boafrm/formTracerouteDiagnosticRun. Executing manipulation of the argument host can lead to buffer overflow. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.

Classic Buffer Overflow

D-Link Router Buffer Overflow in /boafrm/formPingDiagnosticRun
CVE-2025-13304 8.8 - High - November 17, 2025

A security flaw has been discovered in D-Link DWR-M920, DWR-M921, DWR-M960, DWR-M961 and DIR-825M 1.01.07/1.1.47. This vulnerability affects unknown code of the file /boafrm/formPingDiagnosticRun. Performing manipulation of the argument host results in buffer overflow. The attack may be initiated remotely. The exploit has been released to the public and may be exploited.

Classic Buffer Overflow

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for D-Link Dir 825m or by D-Link? Click the Watch button to subscribe.

 

D-Link
Vendor

 
subscribe