CVE-2025-2620
CRITICALD-Link DAP-1620 1.03 - Buffer Overflow
Title source: llmDescription
A vulnerability has been found in D-Link DAP-1620 1.03 and classified as critical. This vulnerability affects the function mod_graph_auth_uri_handler of the file /storage of the component Authentication Handler. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Exploits (1)
nomisec
WORKING POC
10 stars
by Otsmane-Ahmed · poc
https://github.com/Otsmane-Ahmed/CVE-2025-2620-poc
References (5)
Scores
CVSS v3
9.8
EPSS
0.3561
EPSS Percentile
97.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-119
CWE-121
CWE-787
Status
published
Products (1)
dlink/dap-1620_firmware
1.03
Published
Mar 22, 2025
Tracked Since
Feb 18, 2026