
🚨 CRITICAL: CVE-2025-15194 (CVSS 9.8) affects D-Link DIR-600 routers ≤2.15WWb02. Stack-based buffer overflow in hedwig[.]cgi via Cookie header. Exploit public. Products EOL—replace immediately. #CVE #PatchNow #ThreatIntel https://t.co/2ZJeMNycBo
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
A vulnerability was found in D-Link DIR-600 up to 2.15WWb02. Affected by this vulnerability is an unknown functionality of the file hedwig.cgi of the component HTTP Header Handler. The manipulation of the argument Cookie results in stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been made public and could be used. This vulnerability only affects products that are no longer supported by the maintainer.
Priority
LOW
Exploitation
NONE
PoC
YES
Patch
NONE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.
2 versions affected across 2 products

🚨 CRITICAL: CVE-2025-15194 (CVSS 9.8) affects D-Link DIR-600 routers ≤2.15WWb02. Stack-based buffer overflow in hedwig[.]cgi via Cookie header. Exploit public. Products EOL—replace immediately. #CVE #PatchNow #ThreatIntel https://t.co/2ZJeMNycBo
2 of 2 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| HW | dlink | dir-600 | b2 | - | - |
| OS | dlink | dir-600_firmware | 2.15ww | - | - |