Description
A flaw has been found in D-Link DIR-825M 1.1.8. This impacts the function sub_41802C of the file /boafrm/formLtefotaUpgradeFibocom of the component LTE Module Firmware Upgrade. This manipulation of the argument fota_url causes stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been published and may be used.
Published: 2026-08-30
Score: 9.4 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A stack-based buffer overflow occurs in the sub_41802C function that processes the fota_url argument for LTE firmware upgrades. A malformed URL can overwrite the stack, potentially allowing arbitrary code execution and full compromise of the device. The flaw carries a CVSS score of 9.4, indicating a critical severity and posing severe confidentiality, integrity and availability risks.

Affected Systems

The vulnerability affects D‑Link DIR‑825M routers that run firmware version 1.1.8. Any deployment of this model with the exposed LTE firmware upgrade interface is potentially vulnerable.

Risk and Exploitability

The high CVSS score signals a critical risk, and an exploit has already been published and may be used. No EPSS score is currently available, but the remote attack vector is clear: an attacker can trigger the overflow via the web interface or other remote management channels that expose the LTE firmware upgrade function. The vulnerability is not listed in CISA’s KEV catalog, yet its criticality warrants immediate attention.

Generated by OpenCVE AI on August 31, 2026 at 00:20 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest D‑Link firmware update that contains the fix for the buffer overflow.
  • If a patch is not yet available, disable or block remote access to the LTE firmware upgrade service—restrict the Web UI or block the associated ports using the firewall.
  • Monitor device logs for repeated attempts to access the LTE upgrade endpoint and inspect for anomalous stack activity.

Generated by OpenCVE AI on August 31, 2026 at 00:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 30 Aug 2026 23:30:00 +0000

Type Values Removed Values Added
Description A flaw has been found in D-Link DIR-825M 1.1.8. This impacts the function sub_41802C of the file /boafrm/formLtefotaUpgradeFibocom of the component LTE Module Firmware Upgrade. This manipulation of the argument fota_url causes stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been published and may be used.
Title D-Link DIR-825M LTE Module Firmware Upgrade formLtefotaUpgradeFibocom sub_41802C stack-based overflow
First Time appeared D-link
D-link dir-825m
Weaknesses CWE-119
CWE-121
CPEs cpe:2.3:h:d-link:dir-825m:*:*:*:*:*:*:*:*
Vendors & Products D-link
D-link dir-825m
References
Metrics cvssV2_0

{'score': 9, 'vector': 'AV:N/AC:L/Au:S/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 9.9, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 9.4, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-30T23:15:11.010Z

Reserved: 2026-08-30T06:17:03.273Z

Link: CVE-2026-82593

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-31T00:16:41.630

Modified: 2026-08-31T00:16:41.630

Link: CVE-2026-82593

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-31T00:30:16Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer

  • CWE-121

    Stack-based Buffer Overflow