CVE-2025-13305
A weakness has been identified in D-Link DWR-M920, DWR-M921, DWR-M960, DIR-822K and DIR-825M 1.01.07. This issue affects some unknown processing of the file /boafrm/formTracerouteDiagnosticRun. Executing manipulation of the argument host can lead to buffer overflow. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.
- Affected products
- D-Link Dir-822, D-Link Dir-825, D-Link Dwr-M920, D-Link Dwr-M921, D-Link Dwr-M960
- Dlink dir-825m Firmware
- = 1.01.07
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 3.6% (88th percentile)
- Weakness
- CWE-120, CWE-119
- NVD status
- Analyzed
- Published
- 2025-11-17
CVE-2025-13305 at NVD
No indexed exploits for CVE-2025-13305 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2025-13305 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.