CVE 8.7 HIGH

D-Link DIR-816L __ajax_exporer.sgi scandir_main stack-based overflow_CVE-2025-13190

8.7 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was found in D-Link DIR-816L 2_06_b09_beta. This vulnerability affects the function scandir_main of the file /portal/__ajax_exporer.sgi. The manipulation of the argument en results in stack-based buffer overflow. The attack may be performed from remote. The exploit has been made public and could be used. This vulnerability only affects products that are no longer supported by the maintainer.

AI Analysis

Stack-based buffer overflow vulnerability in D-Link DIR-816L 2_06_b09_beta via the scandir_main function in /portal/__ajax_exporer.sgi

Basic Information

ID CVE-2025-13190
Source VulDB
Published Nov 15, 2025 at 06:32

Affected Product

Vendor D-Link
Product DIR-816L
Version 2_06_b09_beta
Affected Versions D-Link DIR-816L 2_06_b09_beta

CWE Classification

AI Assessment

AI Score 8.7 / 10
AI Severity High
Vendor D-Link
Product DIR-816L
Version 2_06_b09_beta

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.