CVE-2025-29165Disclosure(dlink / dir-1253)

LOWCVSS 9.8 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-269

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • dir-1253
  • dir-1253_firmware

Threat summary

  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked at 3 mentions on most recent observed day (2026-03-08)
  • 5 total mentions across 2 days

Affected systems

Vendors
Products
dir-1253dir-1253_firmware

2 versions affected across 2 products

Deep dive

Activity timeline5 mentions / 2d
01223Mentions · 2026-03-06: 2Mentions · 2026-03-08: 3Technical Details · 2026-03-06: 1Technical Details · 2026-03-08: 303-0603-08
Signal classification2 categories
Disclosure
480.0%
General
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-062
Disclosure1General1
2026-03-083
Disclosure3
Full discourse5 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2025-29165 An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component https://www.cve.org/CVERecord?id=CVE-2025-29165 ----- Traducción: CVE-2025-29165 Un fallo en D-Link DIR-1253 MESH V1.6.1684 permite … http://infoflow.cloud`

    Post summary

    A privilege‑escalation vulnerability (CVE‑2025‑29165) has been disclosed for D‑Link DIR‑1253 MESH V1.6.1684, referencing the etc/shadow.sample component, but no PoC, exploit, or patch details are provided.

    0000076
    56 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-29165 An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component https://www.cve.org/CVERecord?id=CVE-2025-29165

    Post summary

    The entry announces a privilege‑escalation vulnerability in D-Link DIR-1253 MESH firmware with technical details on the affected component, linking to the CVE record.

    00000270
    56.6K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2025-29165 - Critical An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component https://www.thehackerwire.com/vulnerability/CVE-2025-29165/ https://t.co/eok9oY6dDY

    Post summary

    CVE-2025-29165 is a critical privilege‑escalation vulnerability affecting D‑Link DIR‑1253 MESH firmware V1.6.1684, triggered through the etc/shadow.sample component; the post notes the issue but does not provide exploitation evidence, patch info, or evidence of active attacks.

    00000107
    130 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    The severity is increased for this new vulnerability affecting D-Link DIR-1253 (CVE-2025-29165) https://vuldb.com/?id.349349

    Post summary

    The tweet announces that the severity for CVE‑2025‑29165 on D‑Link DIR‑1253 has been escalated, but offers no technical details, PoC, or mitigation information.

    00000166
    2.1K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2025-29165 D-Link DIR-1253 MESH Privilege Escalation via Etc/Shadow.sample Vulnerability https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-29165

    Post summary

    The text cites CVE-2025-29165, describing a privilege‐escalation flaw involving /etc/shadow.sample on D-Link DIR‑1253 MESH, but offers no PoC, exploit code, or patch information.

    0000087
    4.0K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWdlinkdir-1253---
OSdlinkdir-1253_firmware1.6.1684--

Explore more