CVE-2025-10666PoC(dlink / dir-825)

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A security flaw has been discovered in D-Link DIR-825 up to 2.10. Affected by this vulnerability is the function sub_4106d4 of the file apply.cgi. The manipulation of the argument countdown_time results in buffer overflow. The attack can be executed remotely. The exploit has been released to the public and may be exploited. This vulnerability only affects products that are no longer supported by the maintainer.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • dir-825
  • dir-825_firmware

Threat summary

  • Public PoC is present in monitored signal
  • 1 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
dir-825dir-825_firmware

1 version affected across 2 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-03: 1PoC Mentioned / Linked · 2026-02-03: 1Technical Details · 2026-02-03: 102-03
Signal classification1 categories
PoC
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • Red Secure Tech Ltd.@redsecuretech
    PoC

    CVE-2025-10666: Stack buffer overflow in D-Link DIR-825 Rev.B (≤2.10) via apply.cgi countdown_time parameter causes DoS. https://redsecuretech.co.uk/blog/post/d-link-dir-825-rev-b-buffer-overflow/865 #Cybersecurity #CVE #DLink #BufferOverflow #RouterVulnerability #IoTSecurity #ExploitPoC #DoSAttack #LegacyDevices #ThreatIntel https://t.co/E8CRKLgD7w

    Post summary

    The tweet announces a stack buffer overflow in D-Link DIR-825 Rev.B that can cause DoS, links to a blog containing a PoC, but does not mention active exploitation or a patch.

    0101075
    41 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWdlinkdir-825---
OSdlinkdir-825_firmware---

Explore more