A vulnerability was found in D-Link DI-8100 up to 16.07.26A1 and classified as critical. This issue affects some unknown processing of the file /ddos.asp of the component jhttpd. The manipulation of the argument def_max/def_time/def_tcp_max/def_tcp_time/def_udp_max/def_udp_time/def_icmp_max leads to stack-based buffer overflow. The attack may be initiated remotely. The complexity of an attack is rather high. The exploitation is known to be difficult.
References
Configurations
No configuration.
History
12 May 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/Yhuanhuan01/DI-8100_Vulnerability_Report/blob/main/Vulnerability_Report.md - |
12 May 2025, 17:32
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
11 May 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-11 19:15
Updated : 2025-05-12 19:15
NVD link : CVE-2025-4544
Mitre link : CVE-2025-4544
CVE.ORG link : CVE-2025-4544
JSON object : View
Products Affected
No product.