CVE-2025-1539
Last modified
CVE-2025-1539 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. A vulnerability, which was classified as critical, has been found in D-Link DAP-1320 1.00. Affected by this issue is the function replace_special_char of the file /storagein.pd-XXXXXX. EPSS estimates a 1.47% chance of exploitation in the next 30 days.
Description
A vulnerability, which was classified as critical, has been found in D-Link DAP-1320 1.00. Affected by this issue is the function replace_special_char of the file /storagein.pd-XXXXXX. The manipulation leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dlink | Dap-1320 Firmware | 1.0 |
References
- https://vuldb.com/?ctiid.296480Permissions Required
- https://vuldb.com/?id.296480Permissions Required
- https://vuldb.com/?submit.497496Third Party Advisory
- https://www.dlink.com/Product
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-1539?
How severe is CVE-2025-1539?
How do I fix CVE-2025-1539?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-15382A heap buffer over-read vulnerability exists in the wolfSSH_…8.1
- CVE-2025-15385Insufficient Verification of Data Authenticity vulnerability…9.8
- CVE-2025-15386The Responsive Lightbox & Gallery WordPress plugin before 2.…8.8
- CVE-2025-15387VPN Firewall developed by QNO Technology has a Insufficient …8.8
- CVE-2025-15388VPN Firewall developed by QNO Technology has an OS Command I…8.8
- CVE-2025-15389VPN Firewall developed by QNO Technology has an OS Command I…8.8
- CVE-2025-15390A security flaw has been discovered in PHPGurukul Small CRM …8.8
- CVE-2025-15391A weakness has been identified in D-Link DIR-806A 100CNb11. …9.8
- CVE-2025-15392A weakness has been identified in Kohana KodiCMS up to 13.82…8.8
- CVE-2025-15393A security vulnerability has been detected in Kohana KodiCMS…8.8
- CVE-2025-15394A vulnerability was detected in iCMS up to 8.0.0. Affected i…7.2
- CVE-2025-15395IBM Jazz Foundation 7.0.3 through 7.0.3 iFix019 and 7.1.0 th…5.4
Are you affected by CVE-2025-1539?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
